← Back

CVE-2025-49185

nvd nist
Published: Jun 12, 2025Modified: Jun 17, 2026

JSON object

Loading...
5.4
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N
Exploitability: 2.3 / Impact: 2.7
Source: NVD

Description

The web application is susceptible to cross-site-scripting attacks. An attacker who can create new dashboard widgets can inject malicious JavaScript code into the Transform Function which will be executed when the widget receives data from its data source.

Affected (1)

1 product
Field Analytics
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
All versions

Timeline

No history available yet.