CVE-2025-55996: Rakuten Viber

Medium severity, CVSS 6.3. EPSS: 0.2% chance of exploitation in the next 30 days.

Viber Desktop 25.6.0 is vulnerable to HTML Injection via the text parameter of the message compose/forward interface

Affected products

  • Rakuten Viber: up to and including 25.6.0

Published 2025-09-12. Last modified 2026-06-17.