CVE-2025-46465
CVSS 3.1 Score 7.1 of 10 (high)
Details
Summary
CVE-2025-46465 is a newly disclosed vulnerability that impacts the John Weissberg Print Science Designer software. This issue combines Cross-Site Request Forgery (CSRF) and Stored Cross-Site Scripting (XSS) vulnerabilities. An attacker could exploit the CSRF weakness to perform unauthorized actions on a victim's behalf, while the Stored XSS flaw allows the injection of malicious scripts into web pages viewed by other users. The vulnerability affects Print Science Designer versions from n/a through 1.3.155. This poses a significant security risk, as successful exploitation could lead to unauthorized data manipulation, unintended actions, or exposure of sensitive information. Users are advised to update their software as soon as a patch is available.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.