Apache · Apache Felix Webconsole · CVE-2025-25247
**Name of the Vulnerable Software and Affected Versions**
Apache Felix Webconsole versions 4.x up to 4.9.8
Apache Felix Webconsole versions 5.x up to 5.0.8
**Description**
The issue is related to Improper Neutralization of Input During Web Page Generation, also known as Cross-site Scripting. This allows for potential exploitation.
**Recommendations**
For Apache Felix Webconsole versions 4.x up to 4.9.8, upgrade to version 4.9.10 or higher.
For Apache Felix Webconsole versions 5.x up to 5.0.8, upgrade to version 5.0.10 or higher.