CVE-2025-25081

CVSS 3.1 Score 4.2 of 10 (medium)

Details

Published Feb 7, 2025
CWE ID 862

Summary

CVE-2025-25081 is a security vulnerability affecting the DeannaS Embed RSS software. This issue involves missing authorization, allowing unauthorized access to functionality that should be restricted. The flaw stems from incorrectly configured access control security levels, which can be exploited. This vulnerability affects versions of Embed RSS from n/a through 3.1. Successful exploitation could result in unintended actions, leading to potential harm to the affected system. It is crucial that users of Embed RSS update to a secured version as soon as possible to mitigate this risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share