
CVE-2025-40902 A Stored HTML Injection vulnerability was discovered in the Users functionality due to improper validation of an input parameter. An authenticated user with administr… https://www.cve.org/CVERecord?id=CVE-2025-40902
Post summary
The excerpt announces a new vulnerability, CVE-2025-40902, describing it as a stored HTML injection due to improper input validation in the Users functionality.
