← Back to browse · API

CVE-2025-49410

Severity
CRITICAL
CVSS
10.0
EPSS
0.00484
Risk score
40.17
CISA KEV
No
PoC
No
Published
2025-08-20
Modified
2026-04-28
First seen
2026-08-07
Aliases
EUVD-2025-25293, GHSA-7WG4-W577-22H4
Products
Imran Emu:TC Testimonials n/a ≤1.1.1
Sources
euvd EUVD-2025-25293

Description

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Imran Emu TC Testimonials allows Stored XSS. This issue affects TC Testimonials: from n/a through 1.1.1.

References