Vulnerabilities (CVE)

Filtered by vendor U-tools Subscribe
Filtered by product Utools
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2025-51966 1 U-tools 1 Utools 2025-09-05 N/A 6.1 MEDIUM
A cross-site scripting (XSS) vulnerability exists in the PDF preview functionality of uTools thru 7.1.1. When a user previews a specially crafted PDF file, embedded JavaScript code executes within the application's privileged context, potentially allowing attackers to steal sensitive data or perform unauthorized actions.