Vulnerabilities (CVE)

Filtered by vendor Heavenspell Subscribe
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2025-45661 1 Heavenspell 1 Minitcg 2025-07-02 N/A 5.9 MEDIUM
A cross-site scripting (XSS) vulnerability in miniTCG v1.3.1 beta allows attackers to execute abritrary web scripts or HTML via injecting a crafted payload into the id parameter at /members/edit.php.