CVE-2025-54856 - Movable Type Stored Cross-Site Scripting Vulnerability
CVE ID : CVE-2025-54856
Published : Oct. 23, 2025, 4:10 a.m. | 1 hour, 4 minutes ago
Description : Movable Type contains a stored cross-site scripting vulnerability in Edit ContentData page. If crafted input is stored by an attacker with "ContentType Management" privilege, an arbitrary script may be executed on the web browser of the user who accesses Edit ContentData page.
Severity: 4.8 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
Published : Oct. 23, 2025, 4:10 a.m. | 1 hour, 4 minutes ago
Description : Movable Type contains a stored cross-site scripting vulnerability in Edit ContentData page. If crafted input is stored by an attacker with "ContentType Management" privilege, an arbitrary script may be executed on the web browser of the user who accesses Edit ContentData page.
Severity: 4.8 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...