CVE-2025-22219
VMware Aria Operations for Logs contains a stored cross-site scripting vulnerability. A malicious actor with non-admini
VMware Aria Operations for Logs contains a stored cross-site scripting vulnerability. A malicious actor with non-administrative privileges may be able to inject a malicious script that (can perform stored cross-site scripting) may lead to arbitrary operations as admin user.
MEDIUM · CVSS 6.8
EPSS 0.00211
Monitor
- No active-exploitation, high-EPSS, or public-exploit signals - routine patching cadence
Sigma rules0
YARA rules0