← Back to CVE search

CVE-2025-58920

Zootemplate Cerato

Description

Improper Neutralization of Input During Web Page Generation (-Cross-site Scripting-) vulnerability in Zootemplate Cerato allows Reflected XSS.This issue affects Cerato: from n/a through 2.2.18.

CVSS 7.1EPSS 0.196%Risk 0.72
View source
Published
2026-04-10 14:16:25
Affected versions
<=2.2.18
Type
Package
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:L