Wegia · Wegia · CVE-2025-62359
**Name of the Vulnerable Software and Affected Versions**
WeGIA versions prior to 3.5.0
**Description**
WeGIA is a web management application designed for institutions, primarily targeting Portuguese language users. A Reflected Cross-Site Scripting (XSS) issue exists in the application. Attackers can inject malicious scripts through the `id pet` parameter of the `/pet/profile pet.php?id pet=` API endpoint.
**Recommendations**
Update to version 3.5.0 or later.