CVE-2025-4678
Severity CVSS v4.0:
HIGH
Type:
CWE-77
Command Injection
Publication date:
10/06/2025
Last modified:
12/06/2025
Description
Improper Neutralization of Special Elements in the chromium_path variable may allow OS command injection. This issue affects Pandora ITSM 5.0.105.