CNNVD-202508-795 Information

CNNVD ID

CNNVD-202508-795

CVE-2025-8737

  • CNNVD Published: 2025-08-08

Description (Chinese)

zlt-microservices-platform是zlt个人开发者的一个平台系统。 zlt-microservices-platform 6.0.0及之前版本存在输入验证错误漏洞,该漏洞源于对参数redirect_url的错误操作导致开放重定向。

Description (English)

zlt-microservices-platform is a platform system of zlt personal developers. zlt-microservices-platform 6.0.0 and previous versions have input authentication bugs, which result from an error in the argument redirect url, leading to an open redirection.

Hazard Level

Critical

Vulnerability Type

输入验证错误

Affected Vendor

个人开发者

Published

2025-08-08

Last Modified

2026-02-24

References

https://github.com/zlt2000/microservices-platform/issues/78 https://github.com/zlt2000/microservices-platform/issues/78#issue-3264847333 https://vuldb.com/?ctiid.319233 https://vuldb.com/?id.319233 https://vuldb.com/?submit.623477 https://access.redhat.com/security/cve/cve-2025-8737

Share on: