PT-2025-48257 · Open Xchange Gmbh · Ox App Suite
Published
2025-11-27
·
Updated
2025-11-27
·
CVE-2025-59025
CVSS v3.1
6.1
Medium
| Vector | AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N |
Name of the Vulnerable Software and Affected Versions
(affected versions not specified)
Description
Malicious email content can be used to execute script code. This allows for unintended actions to be executed within the user's account, potentially leading to the exfiltration of sensitive information. An update to the sanitization process has been implemented to address potential bypasses. No publicly available exploits are currently known.
Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
XSS
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Ox App Suite