CVE-2025-58920
High Severity
Description
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Zootemplate Cerato allows Reflected XSS.This issue affects ...
Related Vulnerabilities
- CVE-2026-34944: Wasmtime segfault or unused out-of-sandbox load with `f64x2.splat` operator on x86-64 MEDIUM
- CVE-2026-6027: A weakness has been identified in Totolink A7100RU 7.4cu.2313_b20191024. This issue affects the func CRITICAL
- CVE-2026-34943: Wasmtime has a possible panic when lifting `flags` component value MEDIUM
- CVE-2026-4162: The Gravity SMTP plugin for WordPress is vulnerable to Missing Authorization in versions up to, and HIGH
- CVE-2026-34481: Apache Log4j's JsonTemplateLayout https://logging.apache.org/log4j/2.x/manual/json-template-layout. MEDIUM
Related Coverage
Threat Actors