CVE-2025-46729lowCWE-79

CVE-2025-46729: low-severity vulnerability in julmud phpDVDProfiler

phpDVDProfiler Cross-site Scripting vulnerability

Published

8Vexday Risk Score

No sign of exploitation. No public exploitation artifact known so far.

ssvc Trackcvss 2.1epss 0.5%
exploitation probability
0.5%top 60% of all CVEs
observed exploitation
nono source reports it
julmud/phpDVDProfiler is an adoption of the defunct phpDVDProfiler project, which allows users to display on the web their DVD collections maintained with Invelos's DVDProfiler software. Starting in v_20230807 and prior to v_20250511, cross-site scripting in the search function. v_20250511 contains a patch for the issue.
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:P/VC:N/VI:N/VA:N/SC:L/SI:L/SA:N/E:P
Affected products
julmud · phpDVDProfiler