← Zuruck zu CVEs
CVE-2025-69239
LOW2.7
Beschreibung
Raytha CMS is vulnerable to Server-Side Request Forgery in the “Themes - Import from URL” feature. It allows an attacker with high privileges to provide the URL for redirecting server-side HTTP request. This issue was fixed in version 1.4.6.
CVE Details
CVSS v3.1 Bewertung2.7
SchweregradLOW
CVSS VektorCVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:L/A:N
AngriffsvektorNETWORK
KomplexitatLOW
Erforderliche PrivilegienHIGH
BenutzerinteraktionNONE
Veroffentlicht3/16/2026
Zuletzt geandert3/16/2026
Quellenvd
Honeypot-Sichtungen0
Betroffene Produkte
raytha:raytha
Schwachen (CWE)
CWE-918
Referenzen
https://cert.pl/en/posts/2026/03/CVE-2025-69236(cvd@cert.pl)
https://raytha.com(cvd@cert.pl)
IOC Korrelationen
Keine Korrelationen erfasst
This product uses data from the NVD API but is not endorsed or certified by the NVD.