CVE-2025-58406
Severity CVSS v4.0:
MEDIUM
Type:
CWE-693
Protection Mechanism Failure
Publication date:
02/03/2026
Last modified:
02/03/2026
Description
The CGM CLININET application respond without essential security HTTP headers, exposing users to client‑side attacks such as clickjacking, MIME sniffing, unsafe caching, weak cross‑origin isolation, and missing transport security controls.
Impact
Base Score 4.0
5.30
Severity 4.0
MEDIUM



