CVE-2025-22245: XSS
VMware NSX contains a stored Cross-Site Scripting (XSS) vulnerability in the router port due to improper input validation.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-22245?
CVE-2025-22245 has a severity rating that may require immediate attention due to its potential to allow malicious users to execute scripts in the context of a user's session.
How do I fix CVE-2025-22245?
To fix CVE-2025-22245, upgrade VMware NSX to the latest version that addresses this stored Cross-Site Scripting vulnerability.
What impacts does CVE-2025-22245 have on affected systems?
CVE-2025-22245 can allow attackers to steal session cookies, manipulate user accounts, or perform actions on behalf of users in vulnerable installations of VMware NSX.
Is my version of VMware NSX affected by CVE-2025-22245?
Any version of VMware NSX that does not include the latest patches for CVE-2025-22245 is vulnerable to this stored Cross-Site Scripting flaw.
How can I verify if I am vulnerable to CVE-2025-22245?
You can verify vulnerability to CVE-2025-22245 by assessing your installation of VMware NSX for the presence of the improper input validation in the router port.