Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-16909 | VMware NSX contains a stored Cross-Site Scripting (XSS) vulnerability in the gateway firewall due to improper input validation. |
Tue, 15 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Mon, 14 Jul 2025 17:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Broadcom
Broadcom vmware Nsx Vmware Vmware cloud Foundation Vmware telco Cloud Infrastructure Vmware telco Cloud Platform |
|
| CPEs | cpe:2.3:a:broadcom:vmware_nsx:*:*:*:*:*:*:*:* cpe:2.3:a:broadcom:vmware_nsx:4.2.2:*:*:*:*:*:*:* cpe:2.3:a:vmware:cloud_foundation:*:*:*:*:*:*:*:* cpe:2.3:a:vmware:telco_cloud_infrastructure:*:*:*:*:*:*:*:* cpe:2.3:a:vmware:telco_cloud_platform:*:*:*:*:*:*:*:* |
|
| Vendors & Products |
Broadcom
Broadcom vmware Nsx Vmware Vmware cloud Foundation Vmware telco Cloud Infrastructure Vmware telco Cloud Platform |
Wed, 04 Jun 2025 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-79 | |
| Metrics |
ssvc
|
Wed, 04 Jun 2025 19:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | VMware NSX contains a stored Cross-Site Scripting (XSS) vulnerability in the gateway firewall due to improper input validation. | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: vmware
Published:
Updated: 2025-06-04T20:04:30.570Z
Reserved: 2025-01-02T04:30:06.834Z
Link: CVE-2025-22244
Updated: 2025-06-04T20:04:24.487Z
Status : Analyzed
Published: 2025-06-04T20:15:22.263
Modified: 2025-07-14T17:22:22.200
Link: CVE-2025-22244
No data.
OpenCVE Enrichment
No data.
EUVD