CVE-2025-1534
01.04.2025, 04:15
CVE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Payara Platform Payara Server allows : Remote Code Inclusion.This issue affects Payara Server: from 4.1.2.1919.1 before 4.1.2.191.51, from 5.20.0 before 5.68.0, from 6.0.0 before 6.23.0, from 6.2022.1 before 6.2025.2.| Vendor | Product | Version |
|---|---|---|
| payara | payara | 4.1.2.191.1 ≤ 𝑥 < 4.1.2.191.51 |
| payara | payara | 5.20.0 ≤ 𝑥 < 5.68.0 |
| payara | payara | 6.0.0 ≤ 𝑥 < 6.24.0 |
| payara | payara | 6.2022.1 ≤ 𝑥 < 6.2025.3 |
𝑥
= Vulnerable software versions