Medium severity6.1NVD Advisory· Published Oct 3, 2025· Updated Jul 5, 2026
CVE-2021-42193
CVE-2021-42193
Description
nopCommerce 4.40.3 is vulnerable to XSS in the Product Name at /Admin/Product/Edit/[id]. Each time a user views the product in the shop, the XSS payload fires.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3cpe:2.3:a:nopcommerce:nopcommerce:4.40.3:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:nopcommerce:nopcommerce:4.40.3:*:*:*:*:*:*:*
- (no CPE)
- (no CPE)range: 4.40.3
Patches
Vulnerability mechanics
References
1- cxsecurity.com/issue/WLB-2025100002nvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.