Medium severity6.5NVD Advisory· Published Nov 12, 2025· Updated Jun 17, 2026
CVE-2025-61623
CVE-2025-61623
Description
Reflected cross-site scripting vulnerability in Apache OFBiz.
This issue affects Apache OFBiz: before 24.09.03.
Users are recommended to upgrade to version 24.09.03, which fixes the issue.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3Patches
Vulnerability mechanics
References
6- www.openwall.com/lists/oss-security/2025/11/11/2nvdMailing ListThird Party Advisory
- lists.apache.org/thread/sb2mngrg766qbqt5g29fo0qblk3v4x5ynvdMailing ListVendor Advisory
- ofbiz.apache.org/security.htmlnvdVendor Advisory
- issues.apache.org/jira/browse/OFBIZ-13295nvdIssue Tracking
- ofbiz.apache.org/download.htmlnvdProduct
- ofbiz.apache.org/release-notes-24.09.03.htmlnvdRelease Notes
News mentions
0No linked articles in our index yet.