CVE-2025-46689

Ververica Platform 2.14.0 contain an Reflected XSS vulnerability via a namespaces/default/formats URI.
Configurations

Configuration 1 (hide)

cpe:2.3:a:ververica:ververica_platform:2.14.0:*:*:*:*:*:*:*

History

12 May 2025, 19:32

Type Values Removed Values Added
CPE cpe:2.3:a:ververica:ververica_platform:2.14.0:*:*:*:*:*:*:*
First Time Ververica
Ververica ververica Platform
References () https://github.com/gozan10/cve/issues/17 - () https://github.com/gozan10/cve/issues/17 - Exploit, Issue Tracking
References () https://github.com/ververica/ververica-platform-playground - () https://github.com/ververica/ververica-platform-playground - Product
References () https://www.ververica.com/ - () https://www.ververica.com/ - Product

28 Apr 2025, 17:15

Type Values Removed Values Added
References () https://github.com/gozan10/cve/issues/17 - () https://github.com/gozan10/cve/issues/17 -
Summary
  • (es) Ververica Platform 2.14.0 contiene una vulnerabilidad XSS reflejado a través de un URI de espacios de nombres/formatos predeterminados.

27 Apr 2025, 22:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-04-27 22:15

Updated : 2025-05-12 19:32


NVD link : CVE-2025-46689

Mitre link : CVE-2025-46689

CVE.ORG link : CVE-2025-46689


JSON object : View

Products Affected

ververica

  • ververica_platform
CWE
CWE-79

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')