to terminate the script and inject arbitrary JavaScript. This enables remote script execution in users' browsers, with potential for session theft and account compromise.\nThis issue affects Svelte: from 5.46.0 before 5.46.3.","datePublished":"0001-01-01","dateModified":"0001-01-01","author":{"@type":"Organization","name":"Safeguard"},"url":"https://gold.safeguard.sh/vulnerability/CVE-2025-15265","about":{"@type":"Thing","name":"CVE-2025-15265","additionalProperty":[{"@type":"PropertyValue","name":"severity","value":"medium"},{"@type":"PropertyValue","name":"cvss","value":"6.1"}]}}

Loading vulnerability details...