CVE-2025-51965 Information

Description

OURPHP thru 8.6.1 is vulnerable to Cross-Site Scripting (XSS) via the \Name\ field of the \Complete Profile\ functionality under the \My User Center\ page which can be accessed after registering through the front-end interface.

Reference

http://ourphp.com https://www.ourphp.net/ https://www.yuque.com/hkone-3iknd/sgwwfb/nvi4f00wqh3kyg0z?singleDoc

CNNVD-202508-1775 (Published: 2025-08-14)

Share on: