Comodo · Itop · CVE-2025-27139
**Name of the Vulnerable Software and Affected Versions**
Combodo iTop versions prior to 2.7.12
Combodo iTop versions prior to 3.1.2
Combodo iTop versions prior to 3.2.0
**Description**
The issue is related to cross-site scripting that occurs when the preferences page is opened.
**Recommendations**
For versions prior to 2.7.12, update to version 2.7.12 or later.
For versions prior to 3.1.2, update to version 3.1.2 or later.
For versions prior to 3.2.0, update to version 3.2.0 or later.