Loading HuntDB...

GHSA-xm3f-qg9m-jmh5

GitHub Security Advisory

⚠ Unreviewed MODERATE Has CVE

Advisory Details

A cross-site scripting vulnerability exists in
AVEVA PI Connector for CygNet
Versions 1.6.14 and prior that, if exploited, could allow an
administrator miscreant with local access to the connector admin portal
to persist arbitrary JavaScript code that will be executed by other
users who visit affected pages.

Related CVEs

Key Information

GHSA ID
GHSA-xm3f-qg9m-jmh5
Published
June 12, 2025 9:30 PM
Last Modified
June 12, 2025 9:30 PM
CVSS Score
5.0 /10
Primary Ecosystem
Unknown
Primary Package
Unknown
GitHub Reviewed
✗ No

Dataset

Last updated: June 16, 2025 6:25 AM

Data from GitHub Advisory Database. This information is provided for research and educational purposes.