CVE-2025-9225: Mobile Industrial Robots Mir Fleet
Medium severity, CVSS 5.5. EPSS: 0.3% chance of exploitation in the next 30 days.
Stored cross-site scripting (XSS) in the web interface of MiR software versions prior to 3.0.0 on MiR Robots and MiR Fleet allows execution of arbitrary JavaScript code in a victim’s browser
Affected products
- Mobile Industrial Robots Mir Fleet: before 3.0.0 (fixed in 3.0.0)
- Mobile Industrial Robots Mir Robots: before 3.0.0 (fixed in 3.0.0)
Published 2025-08-20. Last modified 2026-06-17.