CVE-2025-10355

MEDIUM

MOLGENIS EMX2 <11.14.0 - Open Redirect

Title source: llm
STIX 2.1

Description

Open redirection vulnerability in MOLGENIS EMX2 v11.14.0. This vulnerability allows an attacker to create a malicious URL using a manipulated redirection parameter, potentially leading users to phishing sites or other malicious destinations via “/%2f%2f<MALICIOUS_DOMAIN>”.

Scores

CVSS v4 5.1
EPSS 0.0006
EPSS Percentile 18.1%
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:A/VC:N/VI:N/VA:N/SC:L/SI:L/SA:N

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-601
Status published
Products (1)
MOLGENIS/MOLGENIS EMX2 11.14.0
Published Oct 23, 2025
Tracked Since Feb 18, 2026