A flaw has been found in CodeCanyon/ui-lib Mentor LMS up to 1.1.1. Affected by this vulnerability is an unknown functionality of the component API. Executing manipulation can lead to permissive cross-domain policy with untrusted domains. The attack may be launched remotely. The exploit has been published and may be used. The vendor was contacted early about this disclosure but did not respond in any way.
References
Configurations
No configuration.
History
05 Oct 2025, 21:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2025-10-05 21:15
Updated : 2025-10-05 21:15
NVD link : CVE-2025-11304
Mitre link : CVE-2025-11304
CVE.ORG link : CVE-2025-11304
JSON object : View
Products Affected
No product.