CVE-2025-67712 | Esri ArcGIS Web AppBuilder Developer Edition up to 2.29 cross site scripting
23:02 - 19 Dec 2025
A vulnerability described as problematic has been identified in Esri ArcGIS Web AppBuilder Developer Edition up to 2.29. This affects an unknown function. Such manipulation leads to cross site scripting. This vulnerability only affects products that are no longer supported by the maintainer. This vulnerability is traded as CVE-2025-67712. The attack may be launched remotely. There is no exploit available. Upgrading the affected component is recommended.