Vulnerabilities
CVE-2025-66923 - Open Source Point of Sale XSS Vulnerability
CVE ID : CVE-2025-66923 Published : Dec. 17, 2025, 6:15 p.m. | 36 minutes ago Description : A Cross-site scripting (XSS) vulnerability in Create/Update Customer(s) in Open Source Point of Sale v3.4.1 allows remote attackers to inject arbitrary web script or HTML via the phone_number parameter. Severity: 0.0 | NA Visit the link for more details, such as CVSS details, affected products, timeline, and more...
Source: Telegram CVE Monitor