CVE-2025-31891

CVSS 3.1 Score 6.5 of 10 (medium)

Details

Published Apr 1, 2025
CWE ID 79

Summary

CVE-2025-31891 is a Cross-site Scripting (XSS) vulnerability affecting the Gosign Posts Slider Block. An attacker can inject malicious scripts into web pages generated by this component, exploiting improper input neutralization. The issue exists in versions from n/a to 1.1.0 of the Gosign – Posts Slider Block. Successful exploitation could lead to unintended execution of attacker-supplied code in users' browsers, potentially compromising their data or session.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share