Cross-site Scripting Vulnerability in Omnipress Product by Omnipressteam
CVE-2026-25432
6.5MEDIUM
What is CVE-2026-25432?
The Omnipress product by Omnipressteam has a security flaw that allows for Stored Cross-site Scripting (XSS) attacks. This vulnerability arises due to improper neutralization of user input during the web page generation process, enabling attackers to inject malicious scripts that can be executed in the context of a user's session. Affected versions include all releases prior to and including 1.6.7.
Affected Version(s)
Omnipress 0 <= 1.6.7