Metrics
Affected Vendors & Products
| Source | ID | Title | 
|---|---|---|
  EUVD | 
                EUVD-2025-24017 | A vulnerability was found in zhenfeng13 My-Blog up to 1.0.0. It has been classified as problematic. Affected is an unknown function of the file /admin/categories/save of the component Category Handler. The manipulation of the argument categoryName leads to cross site scripting. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. | 
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Tue, 02 Sep 2025 19:30:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| First Time appeared | 
        
        Zhenfeng13
         Zhenfeng13 my-blog  | 
|
| CPEs | cpe:2.3:a:zhenfeng13:my-blog:1.0:*:*:*:*:*:*:* | |
| Vendors & Products | 
        
        Zhenfeng13
         Zhenfeng13 my-blog  | 
Tue, 12 Aug 2025 15:15:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Metrics | 
        
        ssvc
         
  | 
Tue, 12 Aug 2025 12:15:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| First Time appeared | 
        
        My-blog Project
         My-blog Project my-blog  | 
|
| Vendors & Products | 
        
        My-blog Project
         My-blog Project my-blog  | 
Fri, 08 Aug 2025 21:15:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Description | A vulnerability was found in zhenfeng13 My-Blog up to 1.0.0. It has been classified as problematic. Affected is an unknown function of the file /admin/categories/save of the component Category Handler. The manipulation of the argument categoryName leads to cross site scripting. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. | |
| Title | zhenfeng13 My-Blog Category save cross site scripting | |
| Weaknesses | CWE-79 CWE-94  | 
|
| References | 
         | |
| Metrics | 
        
        cvssV2_0
         
 
 
 
  | 
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2025-08-12T14:24:41.773Z
Reserved: 2025-08-08T08:35:15.327Z
Link: CVE-2025-8740
Updated: 2025-08-12T14:24:35.494Z
Status : Analyzed
Published: 2025-08-08T21:15:27.050
Modified: 2025-09-02T19:22:10.930
Link: CVE-2025-8740
No data.
                        OpenCVE Enrichment
                    Updated: 2025-08-12T11:47:24Z
 EUVD