A vulnerability was found in ACDH-CH OpenAtlas 8.9.0. It has been rated as problematic. Impacted is an unknown function of the file /insert/person/. Performing manipulation of the argument name/alias-0 results in cross site scripting.

This vulnerability is cataloged as CVE-2025-40709. It is possible to initiate the attack remotely. There is no exploit available.