CVE-2025-7404

Publication date

2025-07-24 20:45:04

Family

Fluid Attacks

State

PUBLISHED

Description

Improper Neutralization of Special Elements used in an OS Command (OS Command Injection) vulnerability in Calibre Web, Autocaliweb allows Blind OS Command Injection.This issue affects Calibre Web: 0.6.24 (Nicolette); Autocaliweb: from 0.7.0 before 0.7.1.