Security Advisory

CVE-2025-54969

6.1
MEDIUM

Vulnerability Description

An issue was discovered in BAE SOCET GXP before 4.6.0.2. The SOCET GXP Job Status Service does not implement CSRF protections. An attacker who social engineers a valid user into clicking a malicious link or visiting a malicious website may be able to submit requests to the Job Status Service without the user's knowledge.
Published Date October 27, 2025
Official Source NIST NVD Advisory