A security flaw has been discovered in zhenfeng13 My-Blog 1.0.0. This vulnerability affects unknown code of the file /blog/comment of the component Frontend Blog Article Comment Handler. The manipulation leads to authentication bypass by capture-replay. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used.
CVSS
No CVSS.
References
Configurations
No configuration.
History
18 Aug 2025, 13:15
Type | Values Removed | Values Added |
---|---|---|
CWE | CWE-294 |
|
CVSS |
v2 : v3 : |
v2 : unknown
v3 : unknown |
18 Aug 2025, 02:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2025-08-18 02:15
Updated : 2025-08-18 13:15
NVD link : CVE-2025-9100
Mitre link : CVE-2025-9100
JSON object : View
Products Affected
No product.
CWE
No CWE.