CVE-2025-58406

Severity CVSS v4.0:
MEDIUM
Type:
CWE-693 Protection Mechanism Failure
Publication date:
02/03/2026
Last modified:
02/03/2026

Description

The CGM CLININET application respond without essential security HTTP headers, exposing users to client‑side attacks such as clickjacking, MIME sniffing, unsafe caching, weak cross‑origin isolation, and missing transport security controls.