CVE-2026-25875 | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

PlaciPy is a placement management system designed for educational institutions. In version 1.0.0, The admin authorization middleware trusts client-controlled JW…
Critical CVSS: 9.3

CVE-2026-25875

PlaciPy is a placement management system designed for educational institutions. In version 1.0.0, The admin authorization middleware trusts client-controlled JWT claims (role and scope) without enforcing server-side role verification.
Vendor
Prasklatechnology
Product
Placipy
CWE
CWE-863
Yayın Tarihi
2026-02-09 22:16:03
Güncelleme
2026-02-11 19:42:50
Source Identifier
security-advisories@github.com
KEV Date Added
-

Kategoriler

Referanslar