PT-2025-38255 · Unknown · Scratch Channel

Snoopythe3-From-Scratch

·

Published

2025-09-17

·

Updated

2025-09-18

·

CVE-2025-59416

CVSS v4.0

7.2

High

VectorAV:N/AC:L/AT:P/PR:L/UI:N/VC:H/VI:N/VA:H/SC:H/SI:N/SA:H
Name of the Vulnerable Software and Affected Versions The Scratch Channel versions prior to 1.2
Description The Scratch Channel is a news website where a user with fork privileges can modify administrators and create articles via a POST request to the API.
Recommendations Update to version 1.2 or later.

Exploit

Fix

Missing Authorization

Weakness Enumeration

Related Identifiers

CVE-2025-59416
GHSA-775W-G375-PJFF

Affected Products

Scratch Channel