Skip to main content
Loading…
    CVE-2025-49540 — ColdFusion versions 2025.2, 2023.14, 2021.20 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by a high-privileged attacker to inject malicious script — CVE Database · The Intelligence Room