CVE List

CVE-2025-67025

Moderate 6.1

Cross Site Scripting vulnerability in Anycomment anycomment.io 0.4.4 allows a remote attacker to execute arbitrary code via the Anycomment comment section

Published January 15, 2026.

Affected software

Get alerts for Anycomment Anycomment.io

Reference links