CVE-2025-51053: Vedo Suite Project Vedo Suite

Medium severity, CVSS 6.1. EPSS: 0.4% chance of exploitation in the next 30 days.

A Cross-site scripting (XSS) vulnerability in /api_vedo/ in Vedo Suite version 2024.17 allows remote attackers to inject arbitrary Javascript or HTML code and potentially trigger code execution in victim's browser.

Affected products

Published 2025-08-06. Last modified 2026-07-05.