IPFire Web-Based Firewall Interface Allows Authenticated Administrator to Inject Persistent JavaScript
![]()
A stored cross-site scripting (XSS) flaw identified in IPFire 2.29’s web-based firewall interface (firewall.cgi).
Tracked as CVE-2025-50975, the vulnerability allows any authenticated administrator to …
Read more
Published Date:
Aug 27, 2025 (1 hour, 59 minutes ago)
Vulnerabilities has been mentioned in this article.