CVE-2025-60936
PoC —CVSS 3.1
6.1 medium
EPSS
<1%p8
Published
()
Modified
Description
Emoncms 11.7.3 is vulnerable to Cross Site in the input handling mechanism. This vulnerability allows authenticated attackers with API access to inject malicious JavaScript code that executes when administrators view the application logs.
- Vendors
- openenergymonitor
- Products
- emoncms
- Weakness
- CWE-79
- Vector
- CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
In the news0 stories
No ingested article mentions this CVE yet.