CNNVD-202512-2172 Information

CNNVD ID

CNNVD-202512-2172

CVE-2025-65473

  • CNNVD Published: 2025-12-11

Description (Chinese)

EasyImages是Jakub Cieslik个人开发者的一个 PIL 上的薄包装器。用于探索、可视化和共享图像。 EasyImages 2.0 2.8.6及之前版本存在安全漏洞,该漏洞源于文件重命名功能不当,可能导致执行任意代码。

Description (English)

EasyImages is a packager on a PIL of Yakub Cieslik personal developers. To explore, visualize and share images. There is a security loophole in EasyImages 2.0 2.8.6 and earlier versions, which stems from inappropriate renaming functions of the document, which may lead to the implementation of any code.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

个人开发者

Published

2025-12-11

Last Modified

2026-02-24

References

https://congsec.cn?id=20251103235610-7t4en7j https://gist.github.com/CongSec/107b9cab6dd1cb297a738f11e2b2dbb6

Share on: