CVE-2025-65270
EUVD-2025-20472222.12.2025, 18:16
Reflected cross-site scripting (XSS) vulnerability in ClinCapture EDC 3.0 and 2.2.3, allowing an unauthenticated remote attacker to execute JavaScript code in the context of the victim's browser.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| clincapture | captivate_electronic_data_capture | 2.2.3 |
| clincapture | captivate_electronic_data_capture | 3.0 |
𝑥
= Vulnerable software versions