PT-2025-18298 · Focus · Focus

James Lee

·

Published

2025-04-30

·

Updated

2025-04-30

·

CVE-2025-3859

CVSS v3.1

6.1

Medium

VectorAV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions Focus versions prior to 138
Description Websites could leverage the truncating behavior of long URLs in the location view to potentially trick users into thinking they were on a different webpage.
Recommendations For versions prior to 138, update to version 138 or later to resolve the issue.

Fix

UI Misrepresentation of Critical Information

Open Redirect

Weakness Enumeration

Related Identifiers

CVE-2025-3859

Affected Products

Focus