PatchSiren

Ofisimo Web-Based Software Technologies CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

HIGH Ofisimo Web-Based Software Technologies CVE published 2026-02-03

CVE-2025-7760

CVE-2025-7760 is a high-severity vulnerability (CVSS Score: 7.6) affecting Ofisimo Web-Based Software Technologies Association Web Package Flora, specifically versions from v3.0 through 03022026. This vulnerability allows for Cross-site Scripting (XSS) through HTTP headers, potentially enabling attackers to inject malicious scripts into web pages viewed by other users.