CVE-2025-71165 | Typesetter CMS up to 5.1 Administrative Interface Status.php path cross site scripting (ID 709 / EUVD-2026-2428)
A vulnerability classified as problematic has been found in Typesetter CMS up to 5.1. This affects an unknown function of the file include/admin/Tools/Status.php of the component Administrative Interface. Performing a manipulation of the argument path results in cross site scripting. This vulnerability only affects products that are no longer supported by the maintainer.
This vulnerability is identified as CVE-2025-71165. The attack can be initiated remotely. There is not any exploit available.