A vulnerability, which was classified as problematic, was found in GROWI up to 7.2.9. This impacts an unknown function. Such manipulation leads to cross site scripting.

This vulnerability is referenced as CVE-2025-61994. It is possible to launch the attack remotely. No exploit is available.

You should upgrade the affected component.