CVE-2025-32385 | EspoCRM up to 9.0.4 Iframe Dashlet ui layer (GHSA-2rf2-mj98-2fr8)
A vulnerability was found in EspoCRM up to 9.0.4. It has been classified as problematic. This affects an unknown part of the component Iframe Dashlet. The manipulation leads to improper restriction of rendered ui layers.
This vulnerability is uniquely identified as CVE-2025-32385. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.