5.4
CVSSv3

CVE-2025-43717

CVSSv4: NA | CVSSv3: 5.4 | CVSSv2: NA | VMScore: 640 | EPSS: 0.00041 | KEV: Not Included
Published: 17/04/2025 Updated: 17/04/2025

Vulnerability Summary

Stored XSS Vulnerability in PEAR HTTP_Request2 Before 2.7.0

In PEAR HTTP_Request2 prior to 2.7.0, multiple files in the tests directory, notably tests/_network/getparameters.php and tests/_network/postparameters.php, reflect any GET or POST parameters, leading to XSS.

Vulnerable Product Search on Vulmon Subscribe to Product

avb http request2