Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-h842-f758-5xgc

Опубликовано: 20 июл. 2025
Источник: github
Github: Не прошло ревью
CVSS4: 6.9
CVSS3: 7.3

Описание

A vulnerability was found in harry0703 MoneyPrinterTurbo up to 1.2.6 and classified as critical. Affected by this issue is the function verify_token of the file app/controllers/base.py of the component API Endpoint. The manipulation leads to missing authentication. The attack may be launched remotely.

A vulnerability was found in harry0703 MoneyPrinterTurbo up to 1.2.6 and classified as critical. Affected by this issue is the function verify_token of the file app/controllers/base.py of the component API Endpoint. The manipulation leads to missing authentication. The attack may be launched remotely.

EPSS

Процентиль: 19%
0.0006
Низкий

6.9 Medium

CVSS4

7.3 High

CVSS3

Дефекты

CWE-287
CWE-306

Связанные уязвимости

CVSS3: 7.3
nvd
7 месяцев назад

A vulnerability was found in harry0703 MoneyPrinterTurbo up to 1.2.6 and classified as critical. Affected by this issue is the function verify_token of the file app/controllers/base.py of the component API Endpoint. The manipulation leads to missing authentication. The attack may be launched remotely.

EPSS

Процентиль: 19%
0.0006
Низкий

6.9 Medium

CVSS4

7.3 High

CVSS3

Дефекты

CWE-287
CWE-306