cve/2025/CVE-2025-24704.md
2025-09-29 21:09:30 +02:00

869 B

CVE-2025-24704

Description

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Sebastian Zaha Magic the Gathering Card Tooltips allows Stored XSS. This issue affects Magic the Gathering Card Tooltips: from n/a through 3.4.0.

POC

Reference

No PoCs from references.

Github