PT-2025-25509 · Unknown · Szluyu99 Gin-Vue-Blog
Tritium
·
Published
2025-06-16
·
Updated
2025-06-16
·
CVE-2025-6099
CVSS v3.1
5.3
Medium
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N |
Name of the Vulnerable Software and Affected Versions
szluyu99 gin-vue-blog up to 61dd11ccd296e8642a318ada3ef7b3f7776d2410
Description
A critical vulnerability was found in the PATCH Request Handler component of szluyu99 gin-vue-blog, affecting unknown code in the file gin-blog-server/internal/manager.go. This leads to improper authorization and can be initiated remotely. The exploit has been disclosed to the public and may be used.
Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Exploit
Improper Authorization
Incorrect Privilege Assignment
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Szluyu99 Gin-Vue-Blog