7.1
CVSSv3

CVE-2025-23786

CVSSv4: NA | CVSSv3: 7.1 | CVSSv2: NA | VMScore: 810 | EPSS: 0.00047 | KEV: Not Included
Published: 14/02/2025 Updated: 14/02/2025

Vulnerability Summary

Reflected Cross-Site Scripting Vulnerability in DuoGeek Email to Download

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in DuoGeek Email to Download allows Reflected XSS. This issue affects Email to Download: from n/a up to and including 3.1.0.

Vulnerable Product Search on Vulmon Subscribe to Product

duogeek email to download