CVE-2025-60319 | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

PerfreeBlog v4.0.11 is vulnerable to Server-Side Request Forgery due to a missing authorization check in the uploadAttachByUrl API endpoint (AttachController.ja…
Medium CVSS: 6.5

CVE-2025-60319

PerfreeBlog v4.0.11 is vulnerable to Server-Side Request Forgery due to a missing authorization check in the uploadAttachByUrl API endpoint (AttachController.java).
Vendor
Perfree
Product
Perfreeblog
CWE
CWE-918
Yayın Tarihi
2025-10-30 17:15:38
Güncelleme
2025-12-09 18:28:37
Source Identifier
cve@mitre.org
KEV Date Added
-

Kategoriler

Referanslar