CVE-2025-4284: Reflected XSS in Rolantis Information Technologies' Agentis
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Rolantis Information Technologies Agentis allows Reflected XSS, DOM-Based XSS.
This issue affects Agentis: before 4.32.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-4284?
CVE-2025-4284 is classified as a medium severity vulnerability due to its potential for exposing users to reflected and DOM-based XSS attacks.
How do I fix CVE-2025-4284?
To remediate CVE-2025-4284, upgrade Rolantis Information Technologies Agentis to version 4.32 or later.
What type of attack is associated with CVE-2025-4284?
CVE-2025-4284 is associated with Cross-site Scripting (XSS) attacks, including both reflected and DOM-based variants.
Which versions of Agentis are affected by CVE-2025-4284?
CVE-2025-4284 affects all versions of Rolantis Information Technologies Agentis prior to 4.32.
What impacts can CVE-2025-4284 have on users?
CVE-2025-4284 can allow attackers to execute arbitrary scripts in the context of a user's browser, potentially resulting in data theft or user impersonation.