CVE-2025-22623: Ad Inserter
Medium severity, CVSS 5.1. EPSS: 0.4% chance of exploitation in the next 30 days.
Ad Inserter - Ad Manager and AdSense Ads 2.8.0 was found to be vulnerable. The web application dynamically generates web content without validating the source of the potentially untrusted data in myapp/includes/dst/dst.php.
Affected products
- Ad Inserter Ad Inserter: version 2.8.0 only
Published 2025-03-06. Last modified 2026-06-17.