CVE-2025-4294 | HotelRunner B2B up to 03.06.2025 cross site scripting
A vulnerability classified as problematic has been found in HotelRunner B2B up to 03.06.2025. Affected is an unknown function. This manipulation causes cross site scripting.
The identification of this vulnerability is CVE-2025-4294. It is possible to initiate the attack remotely. There is no exploit available.
This product is a managed service. This means that users cannot maintain vulnerability countermeasures themselves.