Beveiligingsadvies

CVE-2025-60790

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2025-10-21 00:00:00
Laatst bijgewerkt 2025-10-27 15:39:25
Toegewezen door mitre
CVSS-score 6.5
Status PUBLISHED

Beschrijving

ProcessWire CMS 3.0.246 allows a low-privileged user with lang-edit to upload a crafted ZIP to Language Support that is auto-extracted without limits prior to validation, enabling resource-exhaustion Denial of Service.