CVE-2025-60936
Severity CVSS v4.0:
Pending analysis
Type:
CWE-79
Cross-Site Scripting (XSS)
Publication date:
24/10/2025
Last modified:
27/10/2025
Description
Emoncms 11.7.3 is vulnerable to Cross Site in the input handling mechanism. This vulnerability allows authenticated attackers with API access to inject malicious JavaScript code that executes when administrators view the application logs.
Impact
Base Score 3.x
6.10
Severity 3.x
MEDIUM



