CVE-2025-58765 | webrecorder wabac.js up to 2.23.10 URL requestURL cross site scripting
A vulnerability was found in webrecorder wabac.js up to 2.23.10 and classified as problematic. Affected by this issue is some unknown functionality of the component URL Handler. Such manipulation of the argument requestURL leads to cross site scripting.
This vulnerability is referenced as CVE-2025-58765. It is possible to launch the attack remotely. No exploit is available.
It is suggested to upgrade the affected component.