Metrics
Affected Vendors & Products
No advisories yet.
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Mon, 10 Nov 2025 09:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Rymcu
Rymcu forest |
|
| Vendors & Products |
Rymcu
Rymcu forest |
Mon, 10 Nov 2025 01:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A security flaw has been discovered in rymcu forest up to de53ce79db9faa2efc4e79ce1077a302c42a1224. Impacted is the function getAll/addDic/getAllDic/deleteDic of the file src/main/java/com/rymcu/forest/lucene/api/UserDicController.java. The manipulation results in missing authorization. The attack may be launched remotely. This product operates on a rolling release basis, ensuring continuous delivery. Consequently, there are no version details for either affected or updated releases. | |
| Title | rymcu forest UserDicController.java deleteDic authorization | |
| Weaknesses | CWE-862 CWE-863 |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2025-11-10T01:32:06.970Z
Reserved: 2025-11-09T06:53:53.615Z
Link: CVE-2025-12925
No data.
Status : Received
Published: 2025-11-10T02:15:34.917
Modified: 2025-11-10T02:15:34.917
Link: CVE-2025-12925
No data.
OpenCVE Enrichment
Updated: 2025-11-10T09:33:10Z