
CVE-2025-40903 A Stored HTML Injection vulnerability was discovered in the Schedule Restore Archive functionality due to improper validation of an input parameter. An authenticated … https://www.cve.org/CVERecord?id=CVE-2025-40903
Post summary
The text announces a stored HTML injection flaw (CVE‑2025‑40903) in the Schedule Restore Archive feature due to improper input validation, without providing any PoC, exploitation code, or evidence of active use.
