All 2 CVE vulnerabilities found in OnlyOffice, with AI-generated Chinese analysis, references, and POCs.
Vendor: Ascensio System SIA
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2025-10255 | Ascensio System SIA OnlyOffice Comment Messages.aspx cross site scripting CWE-79 | 3.5 | Low | 2025-09-11 |
| CVE-2025-10254 | Ascensio System SIA OnlyOffice SVG Image Messages.aspx cross site scripting CWE-79 | 3.5 | Low | 2025-09-11 |
All 2 known CVE vulnerabilities affecting OnlyOffice with full Chinese analysis, references, and POCs where available.