cleantalk

Vulnerabilities and Security Researches

Security report for CVE Giveaways and Contests by PromoSimple > CVE-2025-23934

CVE, Research URL

CVE-2025-23934

Published on
Jan 17, 2025
Research Description
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in PromoSimple Giveaways and Contests by PromoSimple allows Stored XSS.This issue affects Giveaways and Contests by PromoSimple: from n/a through 1.24.
Affected versions
Min -, max 1.24.
Status
vulnerable