CVE-2025-40587 | Siemens Polarion V2404/Polarion V2410 Document cross site scripting (ssa-035571 / WID-SEC-2026-0360)
A vulnerability, which was classified as problematic, has been found in Siemens Polarion V2404 and Polarion V2410. Impacted is an unknown function of the component Document Handler. The manipulation leads to cross site scripting.
This vulnerability is referenced as CVE-2025-40587. Remote exploitation of the attack is possible. No exploit is available.
It is advisable to upgrade the affected component.