Products
Government
Resources
Community
Company
Partners
Sign In / Join
Sign In
Advisories
Netgate pfSense Plus/CE HAProxy Package <=0.63_10 Reflected XSS
Go Back
severity
medium
date
September 9, 2025
Affecting
pfSense Plus 25.07.1
pfSense Plus 25.07
pfSense CE 2.8.1
pfSense CE 2.8.0
CVE
CVE-2025-34172
CVE type
Reflected XSS
CVSS
4.8
CVSS V4 Vector
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:A/VC:L/VI:N/VA:N/SC:L/SI:N/SA:N
References
Vendor issue tracker
Credit
Alex Williams (Pellera Technologies)