6.1
/ 10
MEDIUM
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Description
A Cross-site scripting (XSS) vulnerability in /api_vedo/ in Vedo Suite version 2024.17 allows remote attackers to inject arbitrary Javascript or HTML code and potentially trigger code execution in victim's browser.
AI Analysis
A Cross-site scripting (XSS) vulnerability in Vedo Suite version 2024.17 allows remote attackers to inject arbitrary Javascript or HTML code into a victim's browser, potentially leading to code execution.
Basic Information
ID
CVE-2025-51053
Published
Aug 6, 2025 at 21:15
CWE Classification
AI Assessment
AI Severity
Medium
Vendor
Vedo
Product
Vedo Suite
Version
2024.17