CNNVD-202507-3361 Information

CNNVD ID

CNNVD-202507-3361

CVE-2025-54366

  • CNNVD Published: 2025-07-26

Description (Chinese)

FreeScout是FreeScout公司的一个使用 PHP(Laravel 框架)构建的超轻量级且功能强大的免费开源帮助台和共享收件箱。 FreeScout 1.8.185及之前版本存在代码问题漏洞,该漏洞源于不安全反序列化,可能导致远程代码执行。

Description (English)

FreeScout is a very lightweight and powerful, free-of-charge help desk and shared inbox built by FreeScout using the PHP (Laravel framework). FreeScout 1.8.185 and previous versions had a code gap, which stemmed from unsafe inverse sequences and could lead to remote code implementation.

Hazard Level

Low

Vulnerability Type

代码问题

Published

2025-07-26

Last Modified

2026-02-24

References

https://github.com/freescout-help-desk/freescout/security/advisories/GHSA-vcc2-6r66-gvvj https://github.com/freescout-help-desk/freescout/commit/9669c57f1ddbee896752d9e16270abfd97b20eb9 https://access.redhat.com/security/cve/cve-2025-54366

Patch

https://github.com/freescout-help-desk/freescout/releases

Share on: