CVE-2025-32413: XSS
Published Apr 8, 2025
·Updated
Vulnerability-Lookup before 2.7.1 allows stored XSS via a user bio in website/web/views/user.py.
Affected Software
1 affected component
Vulnerability-Lookup Vulnerability-Lookup<2.7.1
Event History
Apr 8, 2025
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·03:15 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2025-32413?
CVE-2025-32413 is classified as a high severity vulnerability due to its potential for stored cross-site scripting (XSS) attacks.
2
How do I fix CVE-2025-32413?
To fix CVE-2025-32413, upgrade Vulnerability-Lookup to version 2.7.1 or later as it addresses the stored XSS vulnerability.
3
In which component does CVE-2025-32413 occur?
CVE-2025-32413 occurs in the user bio section of the website/web/views/user.py component of Vulnerability-Lookup.
4
What versions are affected by CVE-2025-32413?
CVE-2025-32413 affects all versions of Vulnerability-Lookup prior to 2.7.1.
5
Can CVE-2025-32413 be exploited remotely?
Yes, CVE-2025-32413 can be exploited remotely, allowing an attacker to execute stored XSS via malicious user bios.