Home

Description

HackerOne community member Dao Hoang Anh (yoyomiski) has reported an improper neutralization of whitespace in the username when adding new users. A username with leading or trailing whitespace could be virtually indistinguishable from its legitimate counterpart when the username is displayed in the UI, potentially leading to confusion.

PUBLISHED Reserved 2025-08-07 | Published 2025-11-20 | Updated 2025-11-20 | Assigner hackerone

Product status

6 (semver)
affected

6.0.3 (semver)
unaffected

References

hackerone.com/reports/3413764

cve.org (CVE-2025-55127)

nvd.nist.gov (CVE-2025-55127)

Download JSON