CVE-2025-69236 – Stored XSS in Raytha CMS

CVE ID :CVE-2025-69236

Published : March 16, 2026, 11:52 a.m. | 17 minutes ago

Description :Raytha CMS is vulnerable to Stored XSS via FieldValues[1].Value parameter in post editing functionality. Authenticated attacker with permissions to edit posts can inject arbitrary HTML and JS into website, which will be rendered/executed when visiting edited page.

This issue was fixed in version 1.4.6.

Severity: 5.1 | MEDIUM

Visit the link for more details, such as CVSS details, affected products, timeline, and more…