CNNVD-202511-2668 Information

CNNVD ID

CNNVD-202511-2668

CVE-2025-13588

  • CNNVD Published: 2025-11-24

Description (Chinese)

Streamity.tv是E M个人开发者的一个高级IPTV网络播放器。 Streamity.tv 2.8及之前版本存在代码问题漏洞,该漏洞源于文件public/proxy.php中的错误操作,可能导致服务器端请求伪造。

Description (English)

Streamity.tv is an advanced IPTV network player for EM personal developers. There was a code problem loophole in Streamity.tv 2.8 and earlier versions, which stemmed from the error in the file public/proxy.php, which could lead to a server request for forgery.

Hazard Level

High

Vulnerability Type

代码问题

Affected Vendor

个人开发者

Published

2025-11-24

Last Modified

2026-02-24

References

https://github.com/lKinderBueno/Streamity-Xtream-IPTV-Web-player/releases/tag/v2.8.1 https://github.com/lakshayyverma/CVE-Discovery/blob/main/Streamity.md https://vuldb.com/?submit.687573 https://vuldb.com/?ctiid.333352 https://vuldb.com/?id.333352 https://github.com/lKinderBueno/Streamity-Xtream-IPTV-Web-player/commit/c70bfb8d36b47bfd64c5ec73917e1d9ddb97af92 https://access.redhat.com/security/cve/cve-2025-13588

Patch

https://github.com/lKinderBueno/Streamity-Xtream-IPTV-Web-player/releases

Share on: