MEDIUM 5.4 PyPI
Tendenci CMS Contains a Cross-site Scripting Vulnerability in its Jobs Module
GHSA-g7hj-29xq-r64w · CVE-2025-70959 · PYSEC-2026-137
Published · Modified
Description
A stored cross-site scripting (XSS) vulnerability in the Jobs module of Tendenci CMS v15.3.7 allows attackers to execute arbitrary web scripts or HTML via injecting a crafted payload.
Ready to move
Start Securing
Free, no credit card | First findings in minutes