PT-2025-43672 · Emlog +1 · Emlog +1

Published

2025-10-24

·

Updated

2025-10-24

·

CVE-2025-62717

CVSS v4.0
2.7
VectorAV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N/E:U
Name of the Vulnerable Software and Affected Versions Emlog versions prior to the commit 1f726df Emlog Pro version 2.5.23
Description Emlog Pro version 2.5.23 contains a flaw related to session verification codes. A clearing logic error allows the reuse of email verification codes in any context where they are required.
Recommendations Update to a version with the fix included in commit 1f726df.

Fix

Improper Authentication

Weakness Enumeration

Related Identifiers

CVE-2025-62717
GHSA-WWJ4-PPFJ-HCM6

Affected Products

Emlog
Emlog Pro