Cross-Site Scripting Vulnerability in QR Code Generator by Rene Hermenau
CVE-2025-23831
6.5MEDIUM
What is CVE-2025-23831?
The QR Code Generator by Rene Hermenau is vulnerable to a DOM-Based Cross-Site Scripting (XSS) issue due to improper neutralization of user input during web page generation. This vulnerability can allow an attacker to inject malicious scripts, potentially compromising user data and overall site integrity. Immediate action is recommended for users of affected versions from n/a up to 1.2.6 to mitigate risks.
Affected Version(s)
QR Code Generator 0 <= 1.2.6