CVE-2025-40723 Information

Description

Stored Cross-Site Scripting (XSS) vulnerability in versions prior to Flatboard 3.2.2 of Flatboard Pro consisting of a stored XSS due to lack of proper validation of user input through the footer_text and announcement parameters in config.php.

Reference

https://www.incibe.es/en/incibe-cert/notices/aviso/multiple-stored-cross-site-scripting-xss-vulnerabilities-flatboard-pro

CNNVD-202507-284 (Published: 2025-07-03)

Share on: