CVE-2025-50592 | SeaCMS up to 13.1 player vid cross site scripting
A vulnerability was found in SeaCMS up to 13.1. It has been rated as problematic. Affected by this issue is some unknown functionality of the file Upload/js/player/dmplayer/player. The manipulation of the argument vid leads to cross site scripting.
This vulnerability is handled as CVE-2025-50592. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.