CVE-2025-63848: Swi-Prolog Swish

Medium severity, CVSS 6.1. EPSS: 0.2% chance of exploitation in the next 30 days.

Stored cross site scripting (xss) vulnerability in SWISH prolog thru 2.2.0 allowing attackers to execute arbitrary code via crafted web IDE notebook.

Affected products

Published 2025-11-20. Last modified 2026-06-17.