Security Advisory

CVE-2026-22587

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2026-01-08 17:09:03
Last updated 2026-01-08 17:50:14
Assigner cisa-cg
State PUBLISHED

Description

Ideagen DevonWay contains a stored cross site scripting vulnerability. A remote, authenticated attacker could craft a payload in the Reports page that executes when another user views the report. Fixed in 2.62.4 and 2.62 LTS.