CVE-2025-45662 Information

Description

A cross-site scripting (XSS) vulnerability in the component /master/login.php of mpgram-web commit 94baadb allows attackers to execute arbitrary Javascript in the context of a user’s browser via a crafted payload.

Reference

https://github.com/J4cky1028/vulnerability-research/tree/main/CVE-2025-45662 https://github.com/shinovon/mpgram-web https://mp.nnchan.ru/login.php

CNNVD-202507-1542 (Published: 2025-07-10)

Share on: