HTML Injection Vulnerability in IBM Aspera Faspex Application
CVE-2025-36230
What is CVE-2025-36230?
The IBM Aspera Faspex application versions 5.0.0 through 5.0.14.1 are susceptible to an HTML injection vulnerability. This issue allows a remote attacker to inject harmful HTML code into web pages that, when accessed by users, invokes the malicious code within their web browsers. This exploitation occurs under the security context of the hosting site, raising significant risks for affected environments. Users and administrators of IBM Aspera Faspex should prioritize patching and implementing security measures to mitigate this vulnerability.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Aspera Faspex 5 5.0.0 <= 5.0.14.1
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved