Medium severity5.4NVD Advisory· Published Dec 30, 2025· Updated Aug 20, 2026
CVE-2025-66823
CVE-2025-66823
Description
An HTML Injection vulnerability in TrueConf server 5.5.2.10813 in the conference description field allows an attacker to inject arbitrary HTML in the Create/Edit conference functionality. The payload will be triggered when the victim opens the Conference Info page ([conference url]/info).
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3Patches
Vulnerability mechanics
References
2- github.com/x00nullbit/CVE-References/blob/main/CVE-2025-66823/README.mdnvdExploitThird Party Advisory
- trueconf.comnvdProduct
News mentions
0No linked articles in our index yet.