Home

Description

There is an authentication bypass vulnerability in WinterChenS my-site thru commit 6c79286 (2025-06-11). An attacker can exploit this vulnerability to access /admin/ API without any token.

PUBLISHED Reserved 2025-06-16 | Published 2025-08-20 | Updated 2025-08-21 | Assigner mitre

References

github.com/WinterChenS/my-site/issues/95

cve.org (CVE-2025-50904)

nvd.nist.gov (CVE-2025-50904)

Download JSON