CVE-2025-7672
Severity CVSS v4.0:
LOW
Type:
CWE-79
Cross-Site Scripting (XSS)
Publication date:
15/07/2025
Last modified:
15/07/2025
Description
The improper default setting in JiranSoft CrossEditor4 on Windows, Linux, Unix (API modules) potentaily allows Stored XSS.<br />
This issue affects CrossEditor4: from 4.0.0.01 before 4.6.0.23.
Impact
Base Score 4.0
2.30
Severity 4.0
LOW
Base Score 3.x
4.30
Severity 3.x
MEDIUM



