Security Advisory

CVE-2025-13938

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2025-12-04 21:47:29
Last updated 2025-12-05 15:45:58
Assigner WatchGuard
State PUBLISHED

Description

Improper Neutralization of Input During Web Page Generation (XSS or Cross-site Scripting) vulnerability in WatchGuard Fireware OS (Autotask Technology Integration module) allows Stored XSS.This issue affects Fireware OS 12.4 up to and including 12.11.4, 12.5 up to and including 12.5.13, and 2025.1 up to and including 2025.1.2.