CVE-2025-66845 - TechStore Reflected Cross-Site Scripting (XSS)

CVE-2025-66845 - TechStore Reflected Cross-Site Scripting (XSS)

CVE ID : CVE-2025-66845 Published : Dec. 23, 2025, 2:16 p.m. | 15 minutes ago Description : A reflected Cross-Site Scripting (XSS) vulnerability has been identified in TechStore version 1.0. The user_name endpoint reflects the id query parameter directly into the HTML response without output encoding or sanitization, allowing execution of arbitrary JavaScript code in a victim’s browser. Severity: 0.0 | NA Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVE Details

Published
Dec. 23, 2025
Impact: XSS

Source: Telegram CVE Monitor