CNNVD-202509-3603 Information

CNNVD ID

CNNVD-202509-3603

CVE-2025-10787

  • CNNVD Published: 2025-09-22

Description (Chinese)

MuYuCMS是MuYuCMS开源的一套轻量级开源内容管理系统。 MuYuCMS 2.7及之前版本存在安全漏洞,该漏洞源于对文件/index/index.html中组件Add Fiend Link Handler的参数Link URL的错误操作,可能导致服务端请求伪造。

Description (English)

MuYuCMS is a light-size open-source content management system for MuYuCMS. There is a security loophole in MuYuCMS 2.7 and earlier versions, which stems from the mishandling of Link URL, the parameter for component Add Fiend Link Handler in document/index/index.html, which may lead to the forgery of service requests.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

MyCourts

Published

2025-09-22

Last Modified

2026-02-24

References

https://gitee.com/MuYuCMS/MuYuCMS/issues/ICXV34 https://vuldb.com/?ctiid.325144 https://vuldb.com/?id.325144 https://vuldb.com/?submit.653888

Share on: