CVE-2025-23213 – Tandoor Recipes Cross-Site Scripting (XSS)

CVE ID : CVE-2025-23213

Published : Jan. 28, 2025, 4:15 p.m. | 15 hours, 44 minutes ago

Description : Tandoor Recipes is an application for managing recipes, planning meals, and building shopping lists. The file upload feature allows to upload arbitrary files, including html and svg. Both can contain malicious content (XSS Payloads). This vulnerability is fixed in 1.5.28.

Severity: 8.7 | HIGH

Visit the link for more details, such as CVSS details, affected products, timeline, and more…

Go to Source