Sploitus

CVE-2025-65482

2 known exploits for CVE-2025-65482

An XML External Entity (XXE) vulnerability in opensagres XDocReport v0.9.2 to v2.0.3 allows attackers to execute arbitrary code via uploading a crafted .docx file.

Affected products
Xdocreport
Opensagres Xdocreport
≤ 2.0.3
Fix
Available
CVSS 3.1
9.8 CRITICAL
EPSS
0.5% (40th percentile)
Weakness
CWE-611
NVD status
Analyzed
Published
2026-01-20
CVE-2025-65482 at NVD
Authoritative description, scoring and affected products

2 known exploits for CVE-2025-65482

Proof-of-concept code and exploit modules indexed by Sploitus