ZeroHour

CVE-2025-45002

PoC
CVSS 3.1
5.4 medium
EPSS
<1%p15
Published
()
Modified
Description

Vigybag v1.0 and before is vulnerable to Cross Site Scripting (XSS) via the upload profile picture function under my profile.

Vendors
codervivek
Products
vigybag
Weakness
CWE-79
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.