CVE-2025-14701

Publication date

2025-12-17 00:04:32

Family

GitLab

State

PUBLISHED

Description

An input neutralization vulnerability in the Server MOTD component of Crafty Controller allows a remote, unauthenticated attacker to perform stored XSS via server MOTD modification.