CVE-2025-34177 | Netgate pfSense CE 7.0.8_2 suricata_flow_stream.php policy_name cross site scripting
A vulnerability labeled as problematic has been found in Netgate pfSense CE 7.0.8_2. The affected element is an unknown function of the file /suricata/suricata_flow_stream.php. The manipulation of the argument policy_name results in cross site scripting.
This vulnerability is known as CVE-2025-34177. It is possible to launch the attack remotely. No exploit is available.