CVE-2025-27400
Magento LTS vulnerable to stored XSS in theme config fields
描述
As reported by [Aakash Adhikari](https://hackerone.com/dark_haxor), Github: @justlife4x4, the Design > Themes > Skin (Images / CSS) config field allows a Stored XSS when it contains an end script tag. ### Impact A malicious user with access to this configuration field could use a Stored XSS to affect other authenticated admin users in the admin panel. The attack requires an admin user with configuration access, so in practice, it is not very likely to be used for gaining elevated privileges, although it could theoretically be used to impersonate other users. 
如何修補 CVE-2025-27400
要修補 CVE-2025-27400,請將受影響套件升級到下列已修補版本。
- —升級至 20.12.3 或更新版本
CVE-2025-27400 正在被利用嗎?
低 — EPSS 為 0.2%,目前沒有觀察到大規模利用活動。
受影響套件(1)
- from 0, < 20.12.3
CVSS 分數
| 來源 | 版本 | 嚴重程度 | 向量 |
|---|---|---|---|
| osv | CVSS 3.1 | LOW2.9 | CVSS:3.1/AV:A/AC:H/PR:H/UI:R/S:U/C:N/I:L/A:L |