CVE-2025-47201: Intrexx

Medium severity, CVSS 5.4. EPSS: 0.2% chance of exploitation in the next 30 days.

In Intrexx Portal Server before 12.0.4, multiple Velocity-Scripts are susceptible to the execution of unrequested JavaScript code in HTML, aka XSS.

Affected products

  • Intrexx Intrexx: before 12.0.4 (fixed in 12.0.4)

Published 2025-05-02. Last modified 2026-06-17.