Unrated severityNVD Advisory· Published May 5, 2025· Updated May 6, 2025
CVE-2025-45236
CVE-2025-45236
Description
A stored cross-site scripting (XSS) vulnerability in the Edit Profile feature of DBSyncer v2.0.6 allows attackers to execute arbitrary web scripts or HTML via injecting a crafted payload into the Nickname parameter.
Affected products
2- DBSyncer/DBSyncerdescription
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
2News mentions
0No linked articles in our index yet.