Executive brief
starcitizentools/citizen-skin is vulnerable to Stored XSS attack in the legacy search bar through page descriptions
Affected products
- Packagist starcitizentools/citizen-skin
Junglewise Threat Intelligence
CVE-2025-53368 · Severity: low · CVSS 3.1 · Published 2025-07-03
Technologies: starcitizentools/citizen-skin (Packagist). Vendors: Packagist.
starcitizentools/citizen-skin is vulnerable to Stored XSS attack in the legacy search bar through page descriptions