CVE-2025-70128 | PluXml up to 5.8.22 Article Comments /core/admin/comments.php Link cross site scripting (Nessus ID 302197)
A vulnerability, which was classified as problematic, has been found in PluXml up to 5.8.22. This vulnerability affects unknown code of the file /core/admin/comments.php of the component Article Comments Handler. This manipulation of the argument Link causes cross site scripting.
This vulnerability is registered as CVE-2025-70128. Remote exploitation of the attack is possible. No exploit is available.