CVE-2025-9913: Sick Baggage Analytics

Medium severity, CVSS 6.1. EPSS: 0.3% chance of exploitation in the next 30 days.

JavaScript can be ran inside the address bar via the dashboard "Open in new Tab" Button, making the application vulnerable to session hijacking.

Affected products

  • Sick Baggage Analytics: any version
  • Sick Logistic Diagnostic Analytics: any version
  • Sick Package Analytics: any version
  • Sick Tire Analytics: any version

Published 2025-10-06. Last modified 2026-06-17.