Логотип exploitDog
bind:CVE-2025-54134
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2025-54134

Количество 2

Количество 2

nvd логотип

CVE-2025-54134

7 месяцев назад

HAX CMS NodeJs allows users to manage their microsite universe with a NodeJs backend. In versions 11.0.8 and below, the HAX CMS NodeJS application crashes when an authenticated attacker provides an API request lacking required URL parameters. This vulnerability affects the listFiles and saveFiles endpoints. This vulnerability exists because the application does not properly handle exceptions which occur as a result of changes to user-modifiable URL parameters. This is fixed in version 11.0.9.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-pjj3-j5j6-qj27

7 месяцев назад

HAX CMS NodeJS Application Has Improper Error Handling That Leads to Denial of Service

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2025-54134

HAX CMS NodeJs allows users to manage their microsite universe with a NodeJs backend. In versions 11.0.8 and below, the HAX CMS NodeJS application crashes when an authenticated attacker provides an API request lacking required URL parameters. This vulnerability affects the listFiles and saveFiles endpoints. This vulnerability exists because the application does not properly handle exceptions which occur as a result of changes to user-modifiable URL parameters. This is fixed in version 11.0.9.

CVSS3: 6.5
0%
Низкий
7 месяцев назад
github логотип
GHSA-pjj3-j5j6-qj27

HAX CMS NodeJS Application Has Improper Error Handling That Leads to Denial of Service

0%
Низкий
7 месяцев назад

Уязвимостей на страницу