CVE-2025-27825

An XSS issue was discovered in the Bootstrap 5 Lite theme before 1.x-1.0.3 for Backdrop CMS. It doesn't sufficiently sanitize certain class names.
Configurations

No configuration.

History

15 Apr 2026, 00:35

Type Values Removed Values Added
Summary
  • (es) Se descubrió un problema de XSS en el tema Bootstrap 5 Lite anterior a la versión 1.x-1.0.3 para Background CMS. No depura lo suficiente ciertos nombres de clase.

07 Mar 2025, 22:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-03-07 22:15

Updated : 2026-04-15 00:35


NVD link : CVE-2025-27825

Mitre link : CVE-2025-27825

CVE.ORG link : CVE-2025-27825


JSON object : View

Products Affected

No product.

CWE
CWE-79

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')