Unrated severityOSV Advisory· Published Dec 15, 2025· Updated Dec 16, 2025
CVE-2025-51962
CVE-2025-51962
Description
A HTML Injection vulnerability in the comment section of the project page in MicroStudio 24.01.29 allows remote attackers to inject arbitrary web script or HTML via the text parameter of add_project_comment function.
Affected products
1- Range: 21.11.00, 21.12.00, 21.12.01, …
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1News mentions
0No linked articles in our index yet.