PT-2025-44434 · Aixblock · Aixblock

Published

2025-10-30

·

Updated

2025-10-30

·

CVE-2025-60950

CVSS v3.1

6.1

Medium

VectorAV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions AIxBlock commit f60975
Description An arbitrary file upload issue exists in the Data Preparation function. Successful exploitation of this issue allows attackers to execute arbitrary code by uploading a crafted SVG file.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

XSS

Weakness Enumeration

Related Identifiers

CVE-2025-60950

Affected Products

Aixblock