CVE-2025-0595: Stored Cross-site Scripting (XSS) vulnerability affecting 3DDashboard in 3DSwymer from Release 3DEXPERIENCE R2022x through Release 3DEXPERIENCE R2024x
A stored Cross-site Scripting (XSS) vulnerability affecting 3DDashboard in 3DSwymer from Release 3DEXPERIENCE R2022x through Release 3DEXPERIENCE R2024x allows an attacker to execute arbitrary script code in user's browser session.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-0595?
CVE-2025-0595 is considered a medium severity vulnerability due to its potential impact on user data and session security.
How do I fix CVE-2025-0595?
To mitigate CVE-2025-0595, update your 3DSwymer or 3DDashboard to the latest version that addresses this XSS vulnerability.
Who is affected by CVE-2025-0595?
CVE-2025-0595 affects users running 3DSwymer and 3DDashboard versions from 3DEXPERIENCE R2022x through R2024x.
What type of vulnerability is CVE-2025-0595?
CVE-2025-0595 is classified as a stored Cross-site Scripting (XSS) vulnerability.
What could an attacker achieve using CVE-2025-0595?
An attacker exploiting CVE-2025-0595 could execute arbitrary script code in a user's browser session.