CNNVD-202509-349 Information

CNNVD ID

CNNVD-202509-349

CVE-2025-9821

  • CNNVD Published: 2025-09-03

Description (Chinese)

Mautic是Mautic开源的一款开源的营销自动化软件。该软件能够监控管理网站、发送电子邮件并管理客户资源。 Mautic存在安全漏洞,该漏洞源于未验证webhook目标,可能导致服务端请求伪造。

Description (English)

Mautic is an open source marketing automation software. The software is capable of monitoring and managing the website, sending e-mails and managing client resources. There is a security gap in Mautić, which stems from the failure to verify the webhuk target and may lead to the forgery of service-level requests.

Hazard Level

Critical

Vulnerability Type

其他

Affected Vendor

Mautic

Published

2025-09-03

Last Modified

2026-02-24

References

https://github.com/mautic/mautic/security/advisories/GHSA-hj6f-7hp7-xg69

Patch

https://github.com/mautic/mautic/releases

Share on: