CVE-2025-35113

5.9MEDIUM

Agiloft Release 28 does not properly neutralize special elements used in an EUI template engine, allowing an authenticated attacker to achieve remote code execution by loading a specially crafted payl

Veröffentlicht: 8/26/2025Aktualisiert: 9/2/2025

Beschreibung

Agiloft Release 28 does not properly neutralize special elements used in an EUI template engine, allowing an authenticated attacker to achieve remote code execution by loading a specially crafted payload. Users should upgrade to Agiloft Release 31.

KI-AnalyseKI-gestützt

Betroffene Produkte

atlassianagiloft

Referenzen