Skip to content

Instantly share code, notes, and snippets.

View pack3ts1's full-sized avatar

nightmar3 pack3ts1

View GitHub Profile
@pack3ts1
pack3ts1 / gist:311b7476477cd18a2ab8c655b590a5c8
Created October 9, 2025 15:36
CVE-2025-57671 Instant Blog - Cross Site Scripting (XSS)
# Title: Instant Blog - Cross Site Scripting (XSS)
# Date: 10/01/2025
# Exploit Author: Nick Griffin | https://medium.com/@griffinnick
# Vendor Homepage: https://codecanyon.net/item/worksuite-project-management-system/20052522
# Software Link: https://codecanyon.net/item/worksuite-project-management-system/20052522
# Version: 1.0 - 3.3
# Tested on Firefox
# Patched Version: Pending
# Category: Web Application
# CVE: CVE-2025–57671