SelectZero Data Observability Platform HTML Injection Vulnerability

Vulnerability

A HTML injection vulnerability has been identified in the SelectZero Data Observability Platform in versions prior to 2025.5.2. The issue arises in legacy user interface fields, which fail to properly sanitize user input, allowing the injection of arbitrary HTML.

Impact

Exploitation of this vulnerability allows for HTML injection, which could be used to manipulate the way content is displayed or to execute malicious scripts in the context of the user's browser.

Remediation

Users can upgrade to SelectZero Data Observability Platform version 2025.5.2 or later to address this vulnerability.

Added: Aug 26, 2025, 3:21 PM
Updated: Aug 26, 2025, 3:21 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
1.7
exploitability
6.4
remediation
7.7
relevance
0.4
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.