CVE-2025-11607
- EPSS 0.13%
- Veröffentlicht 11.10.2025 16:32:05
- Zuletzt bearbeitet 24.02.2026 08:16:16
A weakness has been identified in harry0703 MoneyPrinterTurbo up to 1.2.6. The impacted element is the function upload_music of the file app/controllers/v1/music.py of the component API Endpoint. Executing a manipulation of the argument File can lead...
CVE-2025-10472
- EPSS 0.2%
- Veröffentlicht 15.09.2025 18:32:07
- Zuletzt bearbeitet 21.11.2025 15:11:16
A vulnerability has been found in harry0703 MoneyPrinterTurbo up to 1.2.6. The impacted element is the function download_video/stream_video of the file app/controllers/v1/video.py of the component URL Handler. The manipulation of the argument file_pa...
CVE-2025-49089
- EPSS 0.04%
- Veröffentlicht 15.09.2025 00:00:00
- Zuletzt bearbeitet 02.10.2025 18:49:15
wangxutech MoneyPrinterTurbo 1.2.6 allows path traversal via /api/v1/download/ URIs such as /api/v1/download//etc/passwd.
CVE-2025-7897
- EPSS 0.07%
- Veröffentlicht 20.07.2025 15:15:25
- Zuletzt bearbeitet 20.11.2025 21:20:09
A vulnerability was found in harry0703 MoneyPrinterTurbo up to 1.2.6 and classified as critical. Affected by this issue is the function verify_token of the file app/controllers/base.py of the component API Endpoint. The manipulation leads to missing ...
CVE-2025-7896
- EPSS 0.07%
- Veröffentlicht 20.07.2025 14:44:04
- Zuletzt bearbeitet 20.11.2025 21:21:59
A vulnerability has been found in harry0703 MoneyPrinterTurbo up to 1.2.6 and classified as critical. Affected by this vulnerability is the function download_video/delete_video of the file app/controllers/v1/video.py. The manipulation leads to path t...
CVE-2025-7895
- EPSS 0.04%
- Veröffentlicht 20.07.2025 14:32:04
- Zuletzt bearbeitet 20.11.2025 21:25:14
A vulnerability, which was classified as critical, was found in harry0703 MoneyPrinterTurbo up to 1.2.6. Affected is the function upload_bgm_file of the file app/controllers/v1/video.py of the component File Extension Handler. The manipulation of the...