PT-2025-48257 · Open Xchange Gmbh · Ox App Suite

Published

2025-11-27

·

Updated

2025-11-27

·

CVE-2025-59025

CVSS v3.1

6.1

Medium

VectorAV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions (affected versions not specified)
Description Malicious email content can be used to execute script code. This allows for unintended actions to be executed within the user's account, potentially leading to the exfiltration of sensitive information. An update to the sanitization process has been implemented to address potential bypasses. No publicly available exploits are currently known.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

XSS

Weakness Enumeration

Related Identifiers

CVE-2025-59025

Affected Products

Ox App Suite