CVE-2025-58920
High Severity
Description
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Zootemplate Cerato allows Reflected XSS.This issue affects ...
Related Vulnerabilities
- CVE-2026-4979: The UsersWP – Front-end login form, User Registration, User Profile & Members Directory plugin for W MEDIUM
- CVE-2026-40163: Saltcorn is an extensible, open source, no-code database application builder. Prior to 1.4.5, 1.5.5, HIGH
- CVE-2026-39922: GeoNode versions 4.0 before 4.4.5 and 5.0 before 5.0.2 contain a server-side request forgery vulnera N/A
- CVE-2026-40260: pypdf: Manipulated XMP metadata entity declarations can exhaust RAM MEDIUM
- CVE-2026-40242: Arcane has Unauthenticated SSRF with Conditional Response Reflection in Template Fetch Endpoint HIGH
Related Coverage
Threat Actors