Cross-Site Scripting Vulnerability in Total.js CMS by Total.js

Post Reply
Shane1145
Posts: 1689
Joined: Wed Sep 25, 2024 2:31 pm

Cross-Site Scripting Vulnerability in Total.js CMS by Total.js

Post by Shane1145 »

What is CVE-2025-11019?
A cross-site scripting vulnerability has been identified in Total.js CMS up to version 19.9.0, specifically within the Files Menu component. This issue allows attackers to execute malicious scripts in the context of the user's browser, leading to potential data theft or manipulation. The vulnerability can be exploited remotely, making it crucial for users of affected versions to apply security measures swiftly to mitigate risks associated with this exploit.


https://securityvulnerability.io/vulner ... 2025-11019
Post Reply