First published: Fri Apr 04 2025(Updated: )
A vulnerability was found in CodeCanyon Perfex CRM 3.2.1. It has been classified as problematic. Affected is an unknown function of the file /perfex/clients/project/2 of the component Project Discussions Module. The manipulation of the argument description leads to cross site scripting. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.
Credit: cna@vuldb.com
Affected Software | Affected Version | How to fix |
---|---|---|
Perfex CRM | ||
CodeCanyon Project Discussions Module |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-3219 is classified as a problematic vulnerability due to its potential for cross-site scripting (XSS) attacks.
To fix CVE-2025-3219, sanitize user inputs in the Project Discussions Module to prevent script injection.
CVE-2025-3219 affects the Project Discussions Module in CodeCanyon Perfex CRM version 3.2.1.
CVE-2025-3219 is associated with cross-site scripting (XSS) attacks that can manipulate the argument description.
The vendor of the affected software for CVE-2025-3219 is CodeCanyon.