CVE-2025-60948
Census CSWeb 8.0.1 allows stored cross-site scripting in user supplied fields. A remote, authenticated attacker could store malicious javascript that executes in a victim's browser. Fixed in 8.1.0 alpha.
Vendor
Product
CWE
Yayın Tarihi
2026-03-23 22:16:22
Güncelleme
2026-03-25 21:07:16
Source Identifier
9119a7d8-5eab-497f-8521-727c672e3725
KEV Date Added
-