CVE-2025-57874
29.09.2025, 19:15
There is a reflected cross site scripting vulnerability in Esri Portal for ArcGIS 11.4 and below that may allow a remote authenticated attacker with administrative access to supply a crafted string which would execute arbitrary JavaScript code in the browser.
Awaiting analysis
This vulnerability is currently awaiting analysis.