cleantalk
Vulnerabilities and Security Researches

bidorbuy Store Integrator, CVE-2025-68883

CVE, Research URL

CVE-2025-68883

Published on
Jan 22, 2026
Research Description
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in extremeidea bidorbuy Store Integrator bidorbuystoreintegrator allows Reflected XSS.This issue affects bidorbuy Store Integrator: from n/a through <= 2.12.0.
Affected versions
max 2.12.0.
Status
vulnerable