Urgent: Reflected XSS Vulnerability Discovered in xCally Omnichannel v3.30.1 (CVE-2025-40681)
Overview A reflected Cross-Site Scripting (XSS) vulnerability, identified as CVE-2025-40681, has been discovered in xCally Omnichannel version 3.30.1. This vulnerability allows an attacker to inject malicious JavaScript code into a user’s browser by crafting a specially designed URL. When a user clicks on this malicious URL, the injected script will execute, potentially leading to data … Read more