Skip to content

Commit 80e3b81

Browse files
authored
Merge pull request #10372 from mendix/MvM-CVE-2025-40834
Add information about CVE-2025-40834
2 parents 187685e + ba9e542 commit 80e3b81

1 file changed

Lines changed: 1 addition & 0 deletions

File tree

  • content/en/docs/releasenotes/security-advisories

content/en/docs/releasenotes/security-advisories/_index.md

Lines changed: 1 addition & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -20,6 +20,7 @@ Siemens publishes their common vulnerabilities and exposures (CVE) on the second
2020

2121
| CVE ID | CVSS v3.1 Base Score | Siemens Security Advisory (SSA) Description | Notes |
2222
| --- | --- | --- | --- |
23+
| <a id="40834">CVE-2025-40834 | 5.7 | [Cross-Site Scripting Vulnerability in Mendix Rich Text Widget](https://cert-portal.siemens.com/productcert/html/ssa-190588.html) | See the SSA description for remediation details. |
2324
| <a id="40758">CVE-2025-40758 | 8.7 | [Account Hijacking Vulnerability in Mendix SAML Module](https://cert-portal.siemens.com/productcert/html/ssa-395458.html) | See the SSA description for remediation details. |
2425
| <a id="40592">CVE-2025-40592 | 6.1 | [Zip Path Traversal Vulnerability in Mendix Studio Pro's Module Installation Process](https://cert-portal.siemens.com/productcert/html/ssa-627195.html) | See the SSA description for remediation details. |
2526
| <a id="40571">CVE-2025-40571 | 2.2 | [Incorrect Privilege Assignment Vulnerability in Mendix OIDC SSO Module](https://cert-portal.siemens.com/productcert/html/ssa-726617.html) | See the SSA description for remediation details. |

0 commit comments

Comments
 (0)