Low severity3.5NVD Advisory· Published Apr 27, 2025· Updated Jun 17, 2026
CVE-2025-3962
CVE-2025-3962
Description
A vulnerability classified as problematic was found in withstars Books-Management-System 1.0. This vulnerability affects unknown code of the file /api/comment/add of the component Comment Handler. The manipulation of the argument content leads to cross site scripting. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. This vulnerability only affects products that are no longer supported by the maintainer.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3cpe:2.3:a:withstars:books-management-system:1.0:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:withstars:books-management-system:1.0:*:*:*:*:*:*:*
- (no CPE)range: = 1.0
- (no CPE)range: 1.0
Patches
Vulnerability mechanics
References
4- github.com/caigo8/CVE-md/blob/main/Blog-System/XSS2.mdnvdExploit
- vuldb.comnvdThird Party AdvisoryVDB Entry
- vuldb.comnvdThird Party AdvisoryVDB Entry
- vuldb.comnvdPermissions RequiredVDB Entry
News mentions
0No linked articles in our index yet.