Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Sa7Mon

#36642of 53,624
7.5Total CVSS
Vulnerabilities · 1
PT-2025-9523
7.5
2025-03-03
Faction · Faction · CVE-2025-27422
**Name of the Vulnerable Software and Affected Versions** FACTION versions prior to 1.4.3 **Description** The issue allows an attacker to bypass authentication by registering a new user with admin privileges at any time without authorization. The registration request must follow validation rules, such as providing all required information and using a secure password, but there are no additional controls to prevent this action. **Recommendations** For versions prior to 1.4.3, update to version 1.4.3 to resolve the issue.