Medium severity5.4NVD Advisory· Published Mar 6, 2025· Updated Jun 17, 2026
CVE-2025-25191
CVE-2025-25191
Description
Group-Office is an enterprise CRM and groupware tool. This Stored XSS vulnerability exists where user input in the Name field is not properly sanitized before being stored. This vulnerability is fixed in 6.8.100.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- cpe:2.3:a:group-office:group_office:6.8.99:*:*:*:*:*:*:*
- Range: <6.8.100
- Range: < 6.8.100
Patches
Vulnerability mechanics
References
2News mentions
0No linked articles in our index yet.