CVE-2025-66880
Medium severity, CVSS 6.1. EPSS: 0.3% chance of exploitation in the next 30 days.
Cross Site Scripting vulnerability in Wethink Technology Inc 720yun pano-sdk 0.5.877 allows a remote attacker to execute arbitrary code via the LoginComp (Module 2093) and SignupComp (Module 2094) modules.
Published 2026-03-02. Last modified 2026-06-17.