Vulnerability Details CVE-2025-28097
OneNav 1.1.0 is vulnerable to Cross Site Scripting (XSS) in custom headers.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 20.2%
CVSS Severity
CVSS v3 Score 5.5
Products affected by CVE-2025-28097
-
cpe:2.3:a:onenav:onenav:1.1.0