VulnerabilityAnalyzed
CVE-2025-52219
SelectZero SelectZero Data Observability Platform before 2025.5.2 contains an Open Redirect vulnerability.
MEDIUM 6.5EPSS 0.24%
Does this matter?
Lower severity and a low EPSS score (0.24%). Track it; it rarely justifies an emergency change on its own.
Description
SelectZero SelectZero Data Observability Platform before 2025.5.2 contains an Open Redirect vulnerability. Legacy UI fields can be used to create arbitrary external links via HTML Injection.
- CVSS 3.1
- 6.5 MEDIUMCVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
- EPSS
- 0.24% probability · 15th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-601
- Affected
- selectzero/selectzero
- Source
- cve@mitre.org
References
- https://selectzero.io/change-log/Release Notes
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.