CVE-2025-59158 | coollabsio coolify up to 4.0.0-beta.420.6/4.0.0-beta.420.7 cross site scripting (GHSA-h52r-jxv9-9vhf / WID-SEC-2026-0031)
A vulnerability was found in coollabsio coolify up to 4.0.0-beta.420.6/4.0.0-beta.420.7. It has been rated as problematic. Affected is an unknown function. Performing a manipulation results in cross site scripting.
This vulnerability is identified as CVE-2025-59158. The attack can be initiated remotely. There is not any exploit available.
Upgrading the affected component is advised.