CVE-2025-1076 - Holded Stored XSS Vuln
CVE ID : CVE-2025-1076 Published : Feb. 6, 2025, 2:15 p.m. | 29 minutes ago Description : A Stored Cross-Site Scripting (Stored XSS) vulnerability has been found in the Holded application. This vulnerability could allow an attacker to store a JavaScript payload within the editable ‘name’ and ‘icon’ parameters of the Activities functionality. Severity: 4.8 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more...
![CVE-2025-1076 - Holded Stored XSS Vuln](https://cdn.cvefeed.io/images/cvefeed.io-new.webp)
Published : Feb. 6, 2025, 2:15 p.m. | 29 minutes ago
Description : A Stored Cross-Site Scripting (Stored XSS) vulnerability has been found in the Holded application. This vulnerability could allow an attacker to store a JavaScript payload within the editable ‘name’ and ‘icon’ parameters of the Activities functionality.
Severity: 4.8 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...