cleantalk

Vulnerabilities and Security Researches

Vulnerabilities and security researches for giveaways-contests-by-promosimple

Direction: ascending

Jan 18, 2025

Giveaways and Contests by PromoSimple # CVE-2025-23934

CVE, Research URL

CVE-2025-23934

Date
Jan 17, 2025
Research Description
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in PromoSimple Giveaways and Contests by PromoSimple allows Stored XSS.This issue affects Giveaways and Contests by PromoSimple: from n/a through 1.24.
Affected versions
Min -, max -.
Status
vulnerable