Medium severity6.1NVD Advisory· Published Apr 18, 2025· Updated Jul 5, 2026
CVE-2025-29513
CVE-2025-29513
Description
Cross-Site Scripting (XSS) vulnerability in NodeBB v4.0.4 and before allows remote attackers to store arbitrary code in the admin API Access token generator.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3Patches
Vulnerability mechanics
References
1- www.tonysec.com/posts/cve-2025-29513/nvdThird Party Advisory
News mentions
0No linked articles in our index yet.