Miggo Logo

CVE-2025-30083: Additional TCA Allows Cross-Site Scripting (XSS)

5.1

CVSS Score
3.1

Basic Information

EPSS Score
-
Published
3/19/2025
Updated
3/19/2025
KEV Status
No
Technology
TechnologyPHP

Technical Details

CVSS Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:L/I:L/A:L/E:F/RL:O/RC:C
Package NameEcosystemVulnerable VersionsFirst Patched Version
codingms/additional-tcacomposer>= 1.16.0, < 1.16.91.16.9
codingms/additional-tcacomposer>= 1.7.0, < 1.15.171.15.17

Vulnerability Intelligence
Miggo AIMiggo AI

Miggo AIRoot Cause Analysis:
In progress

WAF Protection Rules

WAF Rule

* *ross-sit* s*riptin* (XSS) vuln*r**ility **s ***n *is*ov*r** in t** ***ition*l T** *xt*nsion. T*is vuln*r**ily is *xploit**l* *y * lo**** in ***k*n* us*r utilizin* t** TYPO* ***k*n* us*r int*r****. T*is us*r **n *r**t* output in t** *TML *ont*xt *y

Reasoning

No *n*lysis *v*il**l*