6.5
/ 10
MEDIUM
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N
Description
Missing Authorization vulnerability in FRESHFACE Custom CSS custom-css-editor allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Custom CSS: from n/a through <= 1.4.0.
Basic Information
ID
CVE-2025-48096
Source
Patchstack
Published
Oct 22, 2025 at 14:32
Modified
Oct 22, 2025 at 19:58
Affected Product
Vendor
FRESHFACE
Product
Custom CSS
Version
n/a
Affected Versions
FRESHFACE Custom CSS n/a