CVE-2025-0609: Logo Software Inc Logo Cloud

Medium severity, CVSS 4.7. EPSS: 0.2% chance of exploitation in the next 30 days.

Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Logo Software Inc. Logo Cloud allows Cross-Site Scripting (XSS). This issue affects Logo Cloud: before 1.18.

Affected products

Published 2025-10-06. Last modified 2026-10-09.