CVE-2025-69245
Reflected XSS in Raytha CMS
CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th
Raytha CMS is vulnerable to Reflected XSS via returnUrl parameter in logon functionality. An attacker can craft a malicious URL which, when opened by the authenticated victim, results in arbitrary JavaScript execution in the victim’s browser. This issue was fixed in 1.4.6.
| CWE | CWE-79 |
| Vendor | raytha |
| Product | raytha |
| Published | Mar 16, 2026 |
| Last Updated | Mar 16, 2026 |
Stay Ahead of the Next One
Get instant alerts for raytha raytha
Be the first to know when new unknown vulnerabilities affecting raytha raytha are published — delivered to Slack, Telegram or Discord.
Get Free Alerts →
Free · No credit card · 60 sec setup
Affected Versions
Raytha / Raytha
0 < 1.4.6
References
Credits
Patryk Kieszek Daniel Basta