VMware Aria XSS Vulnerability Let Attackers Steal Access Token of Logged in User

Broadcom has released an urgent security advisory for a high-severity DOM-based Cross-Site Scripting (XSS) vulnerability affecting VMware Aria automation products. The vulnerability, tracked as CVE-2025-22249, could allow attackers to steal access tokens from logged-in users, potentially leading to unauthorized system access and account compromise. The security flaw, assigned a CVSSv3 base score of 8.2, was […]

The post VMware Aria XSS Vulnerability Let Attackers Steal Access Token of Logged in User appeared first on Cyber Security News.

This article has been indexed from Cyber Security News

Read the original article: