PatchSiren

LigeroSmart CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

LOW LigeroSmart CVE published 2026-01-02

CVE-2025-15437

A cross-site scripting vulnerability was found in LigeroSmart up to 6.1.24. The vulnerability affects an unknown part of the Environment Variable Handler component. The attack may be initiated remotely. Upgrading to version 6.1.26 and 6.3 is able to mitigate this issue. The vulnerability has a CVSS score of 2, indicating low severity. However, users should still take steps to upgrade to a patched version [truncated]