CVE-2025-22249: VMSA-2025-0008: VMware Aria automation updates address a DOM based Cross-site scripting vulnerability (CVE-2025-22249)
VMware Aria automation contains a DOM based Cross-Site Scripting (XSS) vulnerability. A malicious actor may exploit this issue to steal the access token of a logged in user of VMware Aria automation appliance by tricking the user into clicking a malicious crafted payload URL.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2025-22249?
CVE-2025-22249 is classified as a high-severity vulnerability due to its potential to allow unauthorized access to users' access tokens.
How do I fix CVE-2025-22249?
To fix CVE-2025-22249, apply the latest security patches released by VMware for Aria automation.
What kind of attack does CVE-2025-22249 enable?
CVE-2025-22249 enables a DOM-based Cross-Site Scripting (XSS) attack, which may be exploited to steal user credentials.
Who is affected by CVE-2025-22249?
CVE-2025-22249 affects users of VMware Aria automation who are logged into the appliance.
What can be done to mitigate the risks of CVE-2025-22249?
To mitigate risks associated with CVE-2025-22249, users should avoid clicking on untrusted links and ensure their software is up to date.