216.73.216.233

CVE-2025-12001

· Published 20/10/2025 22:15 · Modified 20/10/2025 22:15

Labels: CVE-2025-12001 2025-10-20CVE-2025-12001CWE-20a0340c66-c385-4f8b-991b-3d05f6fd5220

Essential information

Published
20/10/2025 22:15
Modified
20/10/2025 22:15
Author
Creator
CVSS
10.0 CRITICAL (v3) 10.0 CRITICAL (v4.0)
CISA KEV
No
CWE
CVSS vector

CVSS metrics

Description

Lack of application manifest sanitation could lead to potential stored XSS.This issue affects BLU-IC2: through 1.19.5; BLU-IC4: through 1.19.5.

NVD status

Status
Received — CVE has been recently published to the CVE List and has been received by the NVD.
Source
a0340c66-c385-4f8b-991b-3d05f6fd5220
NVD
View on NVD

Affected products (CPE)

ProductCPE
blu / blu-ic2 cpe:2.3:a:blu:blu-ic2:<1.19.5:*:*:*:*:*:*:*
blu / blu-ic4 cpe:2.3:a:blu:blu-ic4:<1.19.5:*:*:*:*:*:*:*

References