CVE-2025-55742 | UnoPim up to 0.2.0 SVG create cross site scripting (GHSA-xr97-25v7-hc2q)
A vulnerability classified as problematic was found in UnoPim up to 0.2.0. This vulnerability affects unknown code of the file /admin/settings/users/create of the component SVG Handler. Executing manipulation can lead to cross site scripting.
This vulnerability is registered as CVE-2025-55742. It is possible to launch the attack remotely. No exploit is available.
Upgrading the affected component is advised.