CVE-2025-11308 | Vanderlande Baggage 360 7.0.0 /api-addons/v1/messages Message cross site scripting (EUVD-2025-32472)
A vulnerability categorized as problematic has been discovered in Vanderlande Baggage 360 7.0.0. This issue affects some unknown processing of the file /api-addons/v1/messages. Such manipulation of the argument Message leads to cross site scripting.
This vulnerability is listed as CVE-2025-11308. The attack may be performed from remote. In addition, an exploit is available.
The vendor was contacted early about this disclosure but did not respond in any way.