CVE-2025-31605
CVSS 3.1 Score 5.9 of 10 (medium)
Details
Summary
CVE-2025-31605 is a Cross-site Scripting (XSS) vulnerability affecting WeblineIndia's Welcome Popup from version n/a to 1.0.10. An attacker can exploit this flaw by injecting malicious scripts into the input fields of the popup, which are then displayed to other users, potentially stealing sensitive information or taking control of their sessions. This can result in unintended execution of malicious code, leading to privacy violations and security breaches. Users are strongly advised to update their Welcome Popup to the latest version and be cautious when inputting information into affected web pages.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.