Medium severity5.4NVD Advisory· Published Jan 28, 2021· Updated Jun 17, 2026
CVE-2021-25647
CVE-2021-25647
Description
Mobile application "Testes de Codigo" v11.3 and prior allows stored XSS by injecting a payload in the "feedback" message field causing it to be stored in the remote database and leading to its execution on client devices when loading the "feedback list", either by accessing the website directly or using the mobile application.
Affected products
3(expand)+ 1 more
- (no CPE)
- (no CPE)range: <=11.3
Patches
Vulnerability mechanics
References
1- vrls.ws/posts/2021/01/cve-2021-25647-mobile-application-testes-de-codigo-stored-xss/nvdThird Party Advisory
News mentions
0No linked articles in our index yet.