A Cross-site scripting (XSS) vulnerability in /api_vedo/ in Vedo Suite version 2024.17 allows remote attackers to inject arbitrary Javascript or HTML code and potentially trigger code execution in victim's browser.
References
Configurations
No configuration.
History
07 Aug 2025, 21:26
Type | Values Removed | Values Added |
---|---|---|
Summary |
|
06 Aug 2025, 21:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2025-08-06 21:15
Updated : 2025-08-07 21:26
NVD link : CVE-2025-51053
Mitre link : CVE-2025-51053
CVE.ORG link : CVE-2025-51053
JSON object : View
Products Affected
No product.
CWE
CWE-79
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')