A vulnerability in the “Manages app data” functionality of the web application of ctrlX OS allows a remote authenticated (lowprivileged) attacker to execute arbitrary client-side code in the context of another user's browser via multiple crafted HTTP requests.
2025-04-30T11:15:48.150
2025-05-02T13:53:40.163
Awaiting Analysis
CVSSv3.1: 7.1 (HIGH)
-