PT-2025-5493 · Unknown · Ketchup Shortcodes

Zaim

·

Published

2025-01-24

·

Updated

2025-01-24

·

CVE-2025-24673

CVSS v3.1

6.5

Medium

VectorAV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:L
Name of the Vulnerable Software and Affected Versions Ketchup Shortcodes versions 0.1.2 and earlier
Description The issue is related to improper neutralization of script-related HTML tags in a web page, which allows for Stored XSS attacks. This means an attacker can inject malicious scripts into the webpage, potentially affecting users who access the page.
Recommendations For versions 0.1.2 and earlier, update to a version that fixes the improper neutralization of script-related HTML tags to prevent Stored XSS attacks. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

XSS

Weakness Enumeration

Related Identifiers

CVE-2025-24673

Affected Products

Ketchup Shortcodes