CVE-2025-25325
CVSS 3.1 Score 5.5 of 10 (medium)
Details
Published Feb 27, 2025
Updated: Feb 28, 2025
CWE ID 84
Summary
CVE-2025-25325 is a vulnerability affecting Yibin Fengguan Network Technology Co., Ltd's YuPao DirectHire iOS application version 8.8.0. This issue grants attackers unrestricted access to sensitive user information by manipulating specially crafted links. Successful exploitation may result in unauthorized exposure of personal data, posing a significant risk to user privacy. It is crucial for affected users to apply the necessary patch or update as soon as possible to mitigate this vulnerability.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.