The a+HRD developed by aEnrich has a Stored Cross-Site Scripting vulnerability, allowing remote attackers with administrator privileges to inject persistent JavaScript codes that are executed in users' browsers upon page load.
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2025-12869.json"
[ { "events": [ { "introduced": "0" }, { "last_affected": "7.5" } ] } ]