CYBER CODE RED

Get real-time updates on Telegram

P5Verified

CVE-2025-41087: Taclia's web application All versions

CVE-2025-41087. EPSS 0.00286 (percentile 0.19234), scored 2026-10-06.

Affected technology

Taclia's web application · All versions
Taclia

Component: Not specified by the source

Attack conditions (Vendor/CNA, CVSS 4.0): Network (remote) · Low privileges required · Passive user interaction

What an attacker can do

To the attackers can embed malicious scripts in SVG files such as image profiles, which are then stored on the server and executed in the context of any user who accesses the compromised resource. Vendor/CNA’s CVSS 4.0 assessment (base score 5.1/10) rates confidentiality, integrity and availability impact as none.

Published

CWE
CWE-79
CCR priority
0.1 /100 (P5)
EPSS
0.00286 · percentile 0.19314 · 2026-10-08
KEV
no

Provenance

Stable permalink: https://cybercodered.org/item/cve-cve-2025-41087.html