CVE-2025-36746

Publication date

2025-12-12 15:05:40

Family

DIVD

State

PUBLISHED

Description

SolarEdge monitoring platform contains a Cross‑Site Scripting (XSS) flaw that allows an authenticated user to inject payloads into report names, which may execute in a victim’s browser during a deletion attempt.