CVE-2025-22243
Severity
7.5HIGH
EPSS
0.2%
top 61.78%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedJun 4
Description
VMware NSX Manager UI is vulnerable to a stored Cross-Site Scripting (XSS) attack due to improper input validation.
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:HExploitability: 1.7 | Impact: 5.3
Affected Packages5 packages
🔴Vulnerability Details
2GHSA▶
GHSA-ccxh-4mwr-475q: VMware NSX Manager UI is vulnerable to a stored Cross-Site Scripting (XSS) attack due to improper input validation↗2025-06-04
CVEList▶
CVE-2025-22243: VMware NSX Manager UI is vulnerable to a stored Cross-Site Scripting (XSS) attack due to improper input validation↗2025-06-04
📋Vendor Advisories
1Oracle▶
Oracle Oracle Retail Applications Risk Matrix: Point of Sale (Spring Framework) — CVE-2024-22243↗2025-04-15