Логотип exploitDog
bind:CVE-2025-32946
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2025-32946

Количество 3

Количество 3

nvd логотип

CVE-2025-32946

10 месяцев назад

This vulnerability allows any attacker to add playlists to a different user’s channel using the ActivityPub protocol. The vulnerable code sets the owner of the new playlist to be the user who performed the request, and then sets the associated channel to the channel ID supplied by the request, without checking if it belongs to the user.

CVSS3: 5.3
EPSS: Низкий
debian логотип

CVE-2025-32946

10 месяцев назад

This vulnerability allows any attacker to add playlists to a different ...

CVSS3: 5.3
EPSS: Низкий
github логотип

GHSA-6f46-45q7-4jx2

10 месяцев назад

This vulnerability allows any attacker to add playlists to a different user’s channel using the ActivityPub protocol. The vulnerable code sets the owner of the new playlist to be the user who performed the request, and then sets the associated channel to the channel ID supplied by the request, without checking if it belongs to the user.

CVSS3: 5.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2025-32946

This vulnerability allows any attacker to add playlists to a different user’s channel using the ActivityPub protocol. The vulnerable code sets the owner of the new playlist to be the user who performed the request, and then sets the associated channel to the channel ID supplied by the request, without checking if it belongs to the user.

CVSS3: 5.3
0%
Низкий
10 месяцев назад
debian логотип
CVE-2025-32946

This vulnerability allows any attacker to add playlists to a different ...

CVSS3: 5.3
0%
Низкий
10 месяцев назад
github логотип
GHSA-6f46-45q7-4jx2

This vulnerability allows any attacker to add playlists to a different user’s channel using the ActivityPub protocol. The vulnerable code sets the owner of the new playlist to be the user who performed the request, and then sets the associated channel to the channel ID supplied by the request, without checking if it belongs to the user.

CVSS3: 5.3
0%
Низкий
10 месяцев назад

Уязвимостей на страницу