VYPR
Medium severity6.1NVD Advisory· Published Dec 22, 2025· Updated Jun 17, 2026

CVE-2025-67443

CVE-2025-67443

Description

Schlix CMS before v2.2.9-5 is vulnerable to Cross Site Scripting (XSS). Due to lack of javascript sanitization in the login form, incorrect login attempts in logs are triggered as XSS in the admin panel.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3
  • Schlix/CMS2 versions
    cpe:2.3:a:schlix:cms:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:schlix:cms:*:*:*:*:*:*:*:*range: <2.2.9-5
    • (no CPE)range: <2.2.9-5
  • Schlix CMS/Schlix CMSdescription

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.