PT-2025-54448 · Nebelhorn+2 · Blappsta Mobile App Plugin+2

Nguyen Xuan Chien

·

Published

2025-12-31

·

Updated

2025-12-31

·

CVE-2025-50053

CVSS v3.1

7.1

High

VectorAV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:L
Name of the Vulnerable Software and Affected Versions nebelhorn Blappsta Mobile App Plugin & Your native, mobile iPhone App and Android App versions through 0.8.8.8
Description The software contains a flaw related to improper input handling during web page generation, leading to a Reflected Cross-site Scripting (XSS) condition. This allows for the injection of malicious scripts into web pages viewed by users. The vulnerability affects the Blappsta Mobile App Plugin and associated native mobile applications for iPhone and Android.
Recommendations Update to a version later than 0.8.8.8.

Fix

XSS

Weakness Enumeration

Related Identifiers

CVE-2025-50053

Affected Products

Android App
Blappsta Mobile App Plugin
Phone App