Metrics
Affected Vendors & Products
No advisories yet.
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Mon, 15 Dec 2025 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 15 Dec 2025 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Samunatsu
Samunatsu halabot |
|
| Vendors & Products |
Samunatsu
Samunatsu halabot |
Mon, 15 Dec 2025 01:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability was determined in SamuNatsu HaloBot up to 026b01d4a896d93eaaf9d5163a287dc9f267515b. Affected is the function html_renderer of the file plugins/html_renderer/index.js of the component Inter-plugin API. Executing manipulation of the argument action can lead to dynamically-managed code resources. The attack can be launched remotely. The exploit has been publicly disclosed and may be utilized. This product does not use versioning. This is why information about affected and unaffected releases are unavailable. The vendor was contacted early about this disclosure but did not respond in any way. This vulnerability only affects products that are no longer supported by the maintainer. | |
| Title | SamuNatsu HaloBot Inter-plugin API index.js html_renderer dynamically-managed code resources | |
| Weaknesses | CWE-913 | |
| References |
| |
| Metrics |
cvssV2_0
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2025-12-15T20:00:48.768Z
Reserved: 2025-12-14T12:14:10.721Z
Link: CVE-2025-14695
Updated: 2025-12-15T20:00:37.449Z
Status : Awaiting Analysis
Published: 2025-12-15T01:15:38.307
Modified: 2025-12-15T18:22:13.783
Link: CVE-2025-14695
No data.
OpenCVE Enrichment
Updated: 2025-12-15T14:05:43Z