First published: Wed Apr 16 2025(Updated: )
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Asgaros Asgaros Forum allows Stored XSS. This issue affects Asgaros Forum: from n/a through 3.0.0.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
Asgaros Forum | >=n/a<=3.0.0 | |
Asgaros Forum | <=3.0.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2025-39514 is classified as a Stored Cross-Site Scripting (XSS) vulnerability.
To fix CVE-2025-39514, you should update Asgaros Forum to a version above 3.0.0.
CVE-2025-39514 affects all versions of Asgaros Forum from n/a up to 3.0.0.
CVE-2025-39514 is categorized as an Improper Neutralization of Input During Web Page Generation leading to Cross-Site Scripting (XSS).
Yes, attackers can exploit CVE-2025-39514 to execute malicious scripts on users' browsers if they interact with the affected Asgaros Forum.