CVE-2025-10332 | cdevroe unmark up to 1.9.3 info.php Title cross site scripting (EUVD-2025-29090)
A vulnerability was found in cdevroe unmark up to 1.9.3. It has been rated as problematic. Impacted is an unknown function of the file application/views/marks/info.php. Performing manipulation of the argument Title results in cross site scripting.
This vulnerability is reported as CVE-2025-10332. The attack is possible to be carried out remotely. Moreover, an exploit is present.
The vendor was contacted early about this disclosure but did not respond in any way.