CVE-2025-7803: Descreekert Wx-Discuz

Low severity, CVSS 3.5. EPSS: 0.3% chance of exploitation in the next 30 days.

A vulnerability was found in descreekert wx-discuz up to 12bd4745c63ec203cb32119bf77ead4a923bf277. It has been classified as problematic. This affects the function validToken of the file /wx.php. The manipulation of the argument echostr leads to cross site scripting. It is possible to initiate the attack remotely. This product takes the approach of rolling releases to provide continious delivery. Therefore, version details for affected and updated releases are not available.

Affected products

Published 2025-07-18. Last modified 2026-06-17.