Security Advisory

CVE-2025-53525

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2025-07-07 16:30:25
Last updated 2025-07-07 20:47:10
Assigner GitHub_M
CVSS score not scored
State PUBLISHED

Description

WeGIA is a web manager for charitable institutions. A Reflected Cross-Site Scripting (XSS) vulnerability was identified in the profile_familiar.php endpoint of the WeGIA application. This vulnerability allows attackers to inject malicious scripts in the id_dependente parameter. This vulnerability is fixed in 3.4.3.