CVE-2025-67231: XSS
A reflected cross-site scripting (XSS) vulnerability in ToDesktop Builder v0.33.1 allows attackers to execute arbitrary code in the context of a user's browser via a crafted payload.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-67231?
CVE-2025-67231 has a medium severity due to the potential for attackers to execute arbitrary code in a user's browser.
How do I fix CVE-2025-67231?
To fix CVE-2025-67231, it is recommended to update ToDesktop Builder to the latest version that includes security patches.
How can CVE-2025-67231 be exploited?
CVE-2025-67231 can be exploited by an attacker crafting a payload that is reflected off a vulnerable instance of ToDesktop Builder, allowing arbitrary code execution.
Which versions are affected by CVE-2025-67231?
CVE-2025-67231 affects ToDesktop Builder version 0.33.1 specifically.
What are the potential impacts of CVE-2025-67231?
The potential impacts of CVE-2025-67231 include unauthorized actions being performed in the context of a user's session, leading to data theft or further exploits.