CVE-2025-29322

Medium severity, CVSS 4.6. EPSS: 0.3% chance of exploitation in the next 30 days.

A cross-site scripting (XSS) vulnerability in ScriptCase before v1.0.003 - Build 3 allows attackers to execute arbitrary code via a crafted payload to the "Connection Name" in the New Connection and Rename Connection pages.

Published 2025-03-26. Last modified 2026-06-17.