CVE-2025-35113

5.9MEDIUM

Agiloft Release 28 does not properly neutralize special elements used in an EUI template engine, allowing an authenticated attacker to achieve remote code execution by loading a specially crafted payl

Publicado: 8/26/2025Actualizado: 9/2/2025

Descripción

Agiloft Release 28 does not properly neutralize special elements used in an EUI template engine, allowing an authenticated attacker to achieve remote code execution by loading a specially crafted payload. Users should upgrade to Agiloft Release 31.

Análisis IAImpulsado por IA

Productos Afectados

atlassianagiloft

Referencias