CVE-2025-61623
published 2025-11-12CVE-2025-61623: Reflected cross-site scripting vulnerability in Apache OFBiz. This issue affects Apache OFBiz: before 24.09.03. Users are recommended to upgrade to version…
medium6.5CVSS 3.1
AVNACLPRNUINSUCLILAN
Reflected cross-site scripting vulnerability in Apache OFBiz.
This issue affects Apache OFBiz: before 24.09.03.
Users are recommended to upgrade to version 24.09.03, which fixes the issue.
Affected
3 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| apache | ofbiz | < 24.09.03 | 24.09.03 |
| apache | ofbiz | — | — |
| apache_software_foundation | apache_ofbiz | < 24.09.03 | 24.09.03 |