VYPR
Medium severity4.8NVD Advisory· Published Nov 12, 2025· Updated Jun 17, 2026

CVE-2025-12869

CVE-2025-12869

Description

The a+HRD developed by aEnrich has a Stored Cross-Site Scripting vulnerability, allowing remote attackers with administrator privileges to inject persistent JavaScript codes that are executed in users' browsers upon page load.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3
  • aEnrich/A\+hrd3 versions
    cpe:2.3:a:aenrich:a\+hrd:*:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:a:aenrich:a\+hrd:*:*:*:*:*:*:*:*range: <=7.5
    • (no CPE)
    • (no CPE)range: 0

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.