๐Ÿ” CVE Alert

CVE-2025-2274

UNKNOWN 0.0

Stored Cross Site Scripting in Forcepoint Web Security

CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

Improper Neutralization of Input During Web Page Generation in Forcepoint Web Security (On-Prem) on Windows allows Stored XSS.This issue affects Web Security through 8.5.6.

CWE CWE-79
Vendor forcepoint
Product web security (on-prem)
Published Mar 16, 2026
Last Updated Mar 16, 2026
Stay Ahead of the Next One

Get instant alerts for forcepoint web security (on-prem)

Be the first to know when new unknown vulnerabilities affecting forcepoint web security (on-prem) are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

Forcepoint / Web Security (On-Prem)
0 โ‰ค 8.5.6

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
support.forcepoint.com: https://support.forcepoint.com/s/article/Security-Advisory-Stored-Cross-Site-Scripting-in-Forcepoint-Web-Security

Credits

Majchrowicz, Zdunek and Marcin Wyczechowski from AFINE Team.