AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2025-3019

HIGH · CVSS 7.2 EPSS 0.26%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2025-03-31 · Last synced 2026-08-04

CyberRota Analysis

This is a high severity vulnerability with a CVSS score of 7.2. It affects Java, GitHub.

CVE
CVE-2025-3019
Severity
HIGH
CVSS
7.2
EPSS
0.26%
Java GitHub

Original NVD Description

KNIME Business Hub is affected by several cross-site scripting vulnerabilities in its web pages. If a user clicks on a malicious link or opens a malicious web page, arbitrary Java Script may be executed with this user's permissions. This can lead to information loss and/or modification of existing data. The issues are caused by a bug https://github.com/Baroshem/nuxt-security/issues/610 in the widely used nuxt-security module. There are no viable workarounds therefore we strongly recommend to update to one of the following versions of KNIME Business Hub: * 1.13.3 or later * 1.12.4 or later

Related CVEs

Other vulnerabilities affecting the same vendor(s)