CVE-2025-8548

A vulnerability was found in atjiu pybbs up to 6.0.0 and classified as problematic. This issue affects the function sendEmailCode of the file src/main/java/co/yiiu/pybbs/controller/api/SettingsApiController.java of the component Registered Email Handler. The manipulation of the argument email leads to information exposure through error message. The attack may be initiated remotely. The complexity of an attack is rather high. The exploitation is known to be difficult. The exploit has been disclosed to the public and may be used. The identifier of the patch is 234197c4f8fc7ce24bdcff5430cd42492f28936a. It is recommended to apply a patch to fix this issue.
CVSS

No CVSS.

Configurations

No configuration.

History

05 Aug 2025, 14:15

Type Values Removed Values Added
CWE CWE-209
CWE-200
CVSS v2 : unknown
v3 : 3.7
v2 : unknown
v3 : unknown

05 Aug 2025, 07:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-08-05 07:15

Updated : 2025-08-05 14:15


NVD link : CVE-2025-8548

Mitre link : CVE-2025-8548


JSON object : View

Products Affected

No product.

CWE

No CWE.