PT-2025-25509 · Unknown · Szluyu99 Gin-Vue-Blog

Tritium

·

Published

2025-06-16

·

Updated

2025-06-16

·

CVE-2025-6099

CVSS v3.1

5.3

Medium

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N
Name of the Vulnerable Software and Affected Versions szluyu99 gin-vue-blog up to 61dd11ccd296e8642a318ada3ef7b3f7776d2410
Description A critical vulnerability was found in the PATCH Request Handler component of szluyu99 gin-vue-blog, affecting unknown code in the file gin-blog-server/internal/manager.go. This leads to improper authorization and can be initiated remotely. The exploit has been disclosed to the public and may be used.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Improper Authorization

Incorrect Privilege Assignment

Weakness Enumeration

Related Identifiers

CVE-2025-6099

Affected Products

Szluyu99 Gin-Vue-Blog