Security Advisory

CVE-2026-22587

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-01-08 17:09:03
Last updated 2026-01-08 17:50:14
Assigner cisa-cg
CVSS score 5.5
State PUBLISHED

Description

Ideagen DevonWay contains a stored cross site scripting vulnerability. A remote, authenticated attacker could craft a payload in the 'Reports' page that executes when another user views the report. Fixed in 2.62.4 and 2.62 LTS.