CVE-2025-41059 UNKNOWN

CVE-2025-41059

Published: 2025-09-04

Description

A vulnerability has been discovered in appRain CMF version 4.0.5, consisting of a stored authenticated XSS due to a lack of proper validation of user input, through the 'data[Addon][layouts]' and 'data[Addon][layouts_except]' parameters in /apprain/developer/addons/update/tablesorter.

AI Intelligence Brief

AI Intelligence

Analyzing vulnerability vectors…