Skip to content

Commit 4b7644e

Browse files
dimodidimodi
authored andcommitted
Update knowledge-base/pdfviewer-xss-vulnerability-cve-2025-6725.md
1 parent 85ba929 commit 4b7644e

File tree

1 file changed

+1
-1
lines changed

1 file changed

+1
-1
lines changed

knowledge-base/pdfviewer-xss-vulnerability-cve-2025-6725.md

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -29,7 +29,7 @@ res_type: kb
2929
This is a security notification that explains how to mitigate a cross-site scripting (XSS) vulnerability [CVE-2025-6725](https://www.cve.org/CVERecord?id=CVE-2025-6725) in the Telerik PDF Viewer component for Blazor.
3030

3131
* The weakness ID is [CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')](https://cwe.mitre.org/data/definitions/79.html).
32-
* The vulnerability CVSS score is `0.54` (medium).
32+
* The vulnerability CVSS score is `5.4` (medium).
3333

3434
The XSS vulnerability can be exploited if a specially-crafted document is already loaded and the user engages with a tool that requires the DOM in the PDF Viewer to re-render.
3535

0 commit comments

Comments
 (0)