CVE-2025-27380 - HTML Injection Leading to Script Execution in Altium Enterprise Server
CVE ID : CVE-2025-27380
Published : Jan. 22, 2026, 1:28 a.m. | 45 minutes ago
Description : HTML injection in Project Release in Altium Enterprise Server (AES) 7.0.3 on all platforms allows an authenticated attacker to execute arbitrary JavaScript in the victim’s browser via crafted HTML content.
Severity: 7.6 | HIGH
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
Published : Jan. 22, 2026, 1:28 a.m. | 45 minutes ago
Description : HTML injection in Project Release in Altium Enterprise Server (AES) 7.0.3 on all platforms allows an authenticated attacker to execute arbitrary JavaScript in the victim’s browser via crafted HTML content.
Severity: 7.6 | HIGH
Visit the link for more details, such as CVSS details, affected products, timeline, and more...