Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-4747 | Movable Type contains a stored cross-site scripting vulnerability in the custom block edit page of MT Block Editor. If exploited, an arbitrary script may be executed on a logged-in user's web browser. |
Wed, 19 Feb 2025 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 19 Feb 2025 06:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Movable Type contains a stored cross-site scripting vulnerability in the custom block edit page of MT Block Editor. If exploited, an arbitrary script may be executed on a logged-in user's web browser. | |
| Weaknesses | CWE-79 | |
| References |
| |
| Metrics |
cvssV3_0
|
Subscriptions
No data.
Status: PUBLISHED
Assigner: jpcert
Published:
Updated: 2025-02-19T14:54:27.745Z
Reserved: 2025-02-03T00:23:33.090Z
Link: CVE-2025-22888
Updated: 2025-02-19T14:54:07.371Z
Status : Deferred
Published: 2025-02-19T06:15:21.687
Modified: 2026-04-15T00:35:42.020
Link: CVE-2025-22888
No data.
OpenCVE Enrichment
No data.
EUVD