Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Thu, 09 Oct 2025 16:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:jhumanj:opnform:*:*:*:*:*:*:*:* |
Thu, 09 Oct 2025 13:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Jhumanj
Jhumanj opnform |
|
| Vendors & Products |
Jhumanj
Jhumanj opnform |
Wed, 08 Oct 2025 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 08 Oct 2025 07:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability was determined in JhumanJ OpnForm up to 1.9.3. Impacted is an unknown function of the file /edit. Executing manipulation can lead to improper access controls. The attack can be executed remotely. The exploit has been publicly disclosed and may be utilized. This patch is called b15e29021d326be127193a5dbbd528c4e37e6324. Applying a patch is advised to resolve this issue. | |
| Title | JhumanJ OpnForm edit access control | |
| Weaknesses | CWE-266 CWE-284 |
|
| References |
|
|
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2025-10-08T13:48:06.257Z
Reserved: 2025-10-07T13:17:24.556Z
Link: CVE-2025-11440
Updated: 2025-10-08T13:47:56.023Z
Status : Analyzed
Published: 2025-10-08T07:15:32.843
Modified: 2026-04-29T01:00:01.613
Link: CVE-2025-11440
No data.
OpenCVE Enrichment
Updated: 2025-10-09T12:55:16Z