PT-2025-45448 · Rymcu · Rymcu Forest

Published

2025-11-07

·

Updated

2025-11-12

·

CVE-2025-63687

CVSS v3.1

6.5

Medium

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions rymcu forest (affected versions not specified)
Description An issue exists that allows authorized attackers to delete arbitrary users' posts. The issue is located in the doBefore function within the AuthorshipAspect.java file in the src/main/java/com/rymcu/forest/core/service/security directory.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Incorrect Authorization

Weakness Enumeration

Related Identifiers

CVE-2025-63687

Affected Products

Rymcu Forest