PT-2025-8725 · Emlog Pro · Emlog Pro

·

CVE-2025-25825

·

Published

2025-02-26

·

Updated

2026-07-05

CVSS v3.1

7.1

High

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:N
Name of the Vulnerable Software and Affected Versions Emlog Pro version 2.5.4
Description A cross-site scripting (XSS) issue allows attackers to execute arbitrary web scripts or HTML by injecting a crafted payload into the Titile in the article category section.
Recommendations For Emlog Pro version 2.5.4, update to a version that fixes this issue to prevent arbitrary web script or HTML execution.

Exploit

Fix

XSS

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2025-25825

Affected Products

Emlog Pro