Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-28418 | SelectZero Data Observability Platform before 2025.5.2 is vulnerable to Content Spoofing / Text Injection. Improper sanitization of unspecified parameters allows attackers to inject arbitrary text or limited HTML into the login page. |
| Link | Providers |
|---|---|
| https://selectzero.io/change-log/ |
|
Tue, 09 Sep 2025 19:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Selectzero selectzero
|
|
| CPEs | cpe:2.3:a:selectzero:selectzero:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Selectzero selectzero
|
Wed, 27 Aug 2025 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-94 | |
| Metrics |
cvssV3_1
|
Wed, 27 Aug 2025 11:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Selectzero
Selectzero data Observability Platform |
|
| Vendors & Products |
Selectzero
Selectzero data Observability Platform |
Tue, 26 Aug 2025 14:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | SelectZero Data Observability Platform before 2025.5.2 is vulnerable to Content Spoofing / Text Injection. Improper sanitization of unspecified parameters allows attackers to inject arbitrary text or limited HTML into the login page. | |
| References |
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-08-27T14:12:55.370Z
Reserved: 2025-06-16T00:00:00.000Z
Link: CVE-2025-52218
Updated: 2025-08-27T14:12:50.358Z
Status : Analyzed
Published: 2025-08-26T15:15:46.190
Modified: 2025-09-09T18:56:56.787
Link: CVE-2025-52218
No data.
OpenCVE Enrichment
Updated: 2025-08-27T11:41:39Z
EUVD