VulnerabilityAnalyzed
CVE-2025-43955
TwsCachedXPathAPI in Convertigo versions before 8.3.11 did not restrict commons-jxpath functions, which could allow expression injection in contexts where an attacker can influence an evaluated XPath expression.
MEDIUM 6.8EPSS 0.34%
Does this matter?
Lower severity and a low EPSS score (0.34%). Track it; it rarely justifies an emergency change on its own.
Description
TwsCachedXPathAPI in Convertigo versions before 8.3.11 did not restrict commons-jxpath functions, which could allow expression injection in contexts where an attacker can influence an evaluated XPath expression. Convertigo 8.3.11 fixes the issue by assigning an empty FunctionLibrary to JXPath contexts.
- CVSS 3.1
- 6.8 MEDIUMCVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:U/C:H/I:H/A:H
- EPSS
- 0.34% probability · 27th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-749, CWE-74
- Affected
- convertigo/convertigo
- Source
- cve@mitre.org
References
- https://github.com/convertigo/convertigo/blob/8.3.11/CHANGELOG.md#8311Release Notes
- https://github.com/convertigo/convertigo/commit/431d1bfeb360a55f4ed299cc3aa287cc5c6357e1Patch
- https://github.com/convertigo/convertigo/issues/898Exploit, Issue Tracking
- https://github.com/convertigo/convertigo/releases/tag/8.3.11Release Notes
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.