Improper Neutralization of Script-Related HTML Tags in a...
Moderate severity
Unreviewed
Published
Oct 27, 2025
to the GitHub Advisory Database
•
Updated Jan 20, 2026
Description
Published by the National Vulnerability Database
Oct 27, 2025
Published to the GitHub Advisory Database
Oct 27, 2025
Last updated
Jan 20, 2026
Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS) vulnerability in Jthemes xSmart xsmart allows Code Injection.This issue affects xSmart: from n/a through <= 1.2.9.4.
References