Reflected cross-site scripting (XSS) vulnerability in ClinCapture EDC 3.0 and 2.2.3, allowing an unauthenticated remote attacker to execute JavaScript code in the context of the victim's browser.
History

Mon, 22 Dec 2025 18:15:00 +0000

Type Values Removed Values Added
Description Reflected cross-site scripting (XSS) vulnerability in ClinCapture EDC 3.0 and 2.2.3, allowing an unauthenticated remote attacker to execute JavaScript code in the context of the victim's browser.
References

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2025-12-22T18:07:43.157Z

Reserved: 2025-11-18T00:00:00.000Z

Link: CVE-2025-65270

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Received

Published: 2025-12-22T18:16:16.813

Modified: 2025-12-22T18:16:16.813

Link: CVE-2025-65270

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.