PatchSiren

Arket CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

MEDIUM Arket CVE published 2026-06-04

CVE-2025-65640

A Cross Site Scripting (XSS) vulnerability exists in the 'Task in Progress / Recent' page of Arket Globe Document Intelligence 5.0.0.559. The vulnerability is caused by improper sanitization of user input in text fields when creating a new document. An authenticated attacker can submit data containing JavaScript code within these fields, which is then executed when the page is rendered, allowing the attac [truncated]