CVE-2025-9429 | mtons mblog up to 3.5.0 Post /post/submit content/title/ cross site scripting (ICPMLJ/ICPMLW)
A vulnerability marked as problematic has been reported in mtons mblog up to 3.5.0. This vulnerability affects unknown code of the file /post/submit of the component Post Handler. The manipulation of the argument content/title/ leads to cross site scripting.
This vulnerability is traded as CVE-2025-9429. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.