cleantalk
Vulnerabilities and Security Researches

Drop Caps, CVE-2025-46495

CVE, Research URL

CVE-2025-46495

Application

Drop Caps

Published on
Apr 24, 2025
Research Description
Cross-Site Request Forgery (CSRF) vulnerability in tomontoast Drop Caps allows Stored XSS. This issue affects Drop Caps: from n/a through 2.1.
Affected versions
Min -, max 2.1.
Status
vulnerable