What is CVE-2025-65342?
CVE-2025-65342 is a Cross Site Scripting (XSS) vulnerability in code-projects Blood System 1.0, specifically in /don.php via the 'city' field. This flaw could allow an attacker to execute malicious scripts in a user's browser. It is recommended to apply the vendor's security patch or sanitize the input data for the 'city' field immediately.
Azərbaycanca: CVE-2025-65342, code-projects Blood System 1.0 proqramında /don.php faylında 'city' parametri vasitəsilə Cross Site Scripting (XSS) zəifliyidir. Bu zəiflik təcavüzkara istifadəçi brauzerində zərərli skript icra etməyə imkan verə bilər. İstifadəçilərə dərhal müvafiq təhlükəsizlik yeniləməsini tətbiq etmək və ya 'city' sahəsinə daxil olan məlumatları filtrasiya etmək tövsiyə olunur.
Related CVEs
link basis: same weakness class CWE-79; shared vendor: code-projects
FAQ2
In which software and file does the CVE-2025-65342 vulnerability exist?
This vulnerability is found in the /don.php file of code-projects Blood System 1.0.
What is recommended to protect against CVE-2025-65342?
To prevent an XSS attack via the 'city' parameter, it is recommended to immediately apply the security patch or sanitize the input data for that field.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.