CVE-2025-28244: Alteryx Server
High severity, CVSS 8.8. EPSS: 0.5% chance of exploitation in the next 30 days.
Insecure Permissions vulnerability in the Local Storage in Alteryx Server 2023.1.1.460 allows remote attackers to obtain valid user session tokens from localStorage, leading to account takeover
Affected products
- Alteryx Alteryx Server: version 2023.1.1.460 only
Published 2025-07-10. Last modified 2026-06-17.