Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-14499 | upset-gal-web v7.1.0 /api/music/v1/cover.ts contains an arbitrary file read vulnerabilit |
Wed, 09 Jul 2025 02:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Shinnku
Shinnku upset-gal-web |
|
| CPEs | cpe:2.3:a:shinnku:upset-gal-web:7.1.0:*:*:*:*:*:*:* | |
| Vendors & Products |
Shinnku
Shinnku upset-gal-web |
Wed, 14 May 2025 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-22 | |
| Metrics |
cvssV3_1
|
Tue, 13 May 2025 15:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | upset-gal-web v7.1.0 /api/music/v1/cover.ts contains an arbitrary file read vulnerabilit | |
| References |
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-05-14T14:00:22.162Z
Reserved: 2025-03-11T00:00:00.000Z
Link: CVE-2025-28055
Updated: 2025-05-14T13:58:40.297Z
Status : Analyzed
Published: 2025-05-13T16:15:28.903
Modified: 2025-07-09T01:58:56.097
Link: CVE-2025-28055
No data.
OpenCVE Enrichment
No data.
EUVD