Логотип exploitDog
bind:CVE-2026-25505
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2026-25505

Количество 2

Количество 2

nvd логотип

CVE-2026-25505

4 дня назад

Bambuddy is a self-hosted print archive and management system for Bambu Lab 3D printers. Prior to version 0.1.7, a hardcoded secret key used for signing JWTs is checked into source code and ManyAPI routes do not check authentication. This issue has been patched in version 0.1.7.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-gc24-px2r-5qmf

6 дней назад

Bambuddy Uses Hardcoded Secret Key + Many API Endpoints do not Require Authentication

CVSS3: 9.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2026-25505

Bambuddy is a self-hosted print archive and management system for Bambu Lab 3D printers. Prior to version 0.1.7, a hardcoded secret key used for signing JWTs is checked into source code and ManyAPI routes do not check authentication. This issue has been patched in version 0.1.7.

CVSS3: 9.8
0%
Низкий
4 дня назад
github логотип
GHSA-gc24-px2r-5qmf

Bambuddy Uses Hardcoded Secret Key + Many API Endpoints do not Require Authentication

CVSS3: 9.8
0%
Низкий
6 дней назад

Уязвимостей на страницу