PT-2025-44048 · Unknown · Inventorygui

Published

2025-10-27

·

Updated

2025-11-03

·

CVE-2025-62783

CVSS v3.1

5.0

Medium

VectorAV:N/AC:L/PR:L/UI:N/S:C/C:N/I:L/A:N
Name of the Vulnerable Software and Affected Versions InventoryGui versions 1.6.1-SNAPSHOT and earlier
Description A flaw exists in InventoryGui that could allow item duplication when the experimental Bundle item feature is enabled on the server. This issue affects any plugin utilizing the GuiStorageElement. The vulnerability is related to the use of the GuiStorageElement within GUIs.
Recommendations Update to version 1.6.2-SNAPSHOT. Avoid using the GuiStorageElement in GUIs.

Exploit

Fix

Improper Check for Exceptional Conditions

Weakness Enumeration

Related Identifiers

CVE-2025-62783
GHSA-598Q-JW82-5W66

Affected Products

Inventorygui