cleantalk
Vulnerabilities and Security Researches

Welcart e-Commerce, CVE-2025-58984

CVE, Research URL

CVE-2025-58984

Application

Welcart e-Commerce

Published on
Sep 09, 2025
Research Description
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in nanbu Welcart e-Commerce allows Stored XSS. This issue affects Welcart e-Commerce: from n/a through 2.11.20.
Affected versions
Min -, max 2.11.21.
Status
vulnerable