6.5
/ 10
MEDIUM
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:L
Description
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in emarket-design WP Ticket Customer Service Software & Support Ticket System allows Stored XSS. This issue affects WP Ticket Customer Service Software & Support Ticket System: from n/a through 6.0.2.
Basic Information
ID
CVE-2025-60157
Source
Patchstack
Published
Sep 26, 2025 at 08:31
Affected Product
Vendor
emarket-design
Product
WP Ticket Customer Service Software & Support Ticket System
Version
n/a
Affected Versions
emarket-design WP Ticket Customer Service Software & Support Ticket System n/a