CVE-2025-11443
- EPSS 0.03%
- Veröffentlicht 08.10.2025 07:32:07
- Zuletzt bearbeitet 09.10.2025 16:14:51
A weakness has been identified in JhumanJ OpnForm up to 1.9.3. This affects an unknown function of the file /api/password/email of the component Forgotten Password Handler. This manipulation causes information exposure through discrepancy. It is poss...
CVE-2025-11442
- EPSS 0.08%
- Veröffentlicht 08.10.2025 07:32:05
- Zuletzt bearbeitet 09.10.2025 16:15:49
A security flaw has been discovered in JhumanJ OpnForm up to 1.9.3. The impacted element is an unknown function of the component API Endpoint. The manipulation results in cross-site request forgery. The attack may be performed from remote. The exploi...
CVE-2025-11441
- EPSS 0.14%
- Veröffentlicht 08.10.2025 07:02:11
- Zuletzt bearbeitet 09.10.2025 16:16:18
A vulnerability was identified in JhumanJ OpnForm up to 1.9.3. The affected element is an unknown function of the component HTTP Header Handler. The manipulation of the argument X-Forwarded-For leads to improper restriction of excessive authenticatio...
CVE-2025-11440
- EPSS 0.02%
- Veröffentlicht 08.10.2025 07:02:07
- Zuletzt bearbeitet 09.10.2025 16:17:19
A vulnerability was determined in JhumanJ OpnForm up to 1.9.3. Impacted is an unknown function of the file /edit. Executing manipulation can lead to improper access controls. The attack can be executed remotely. The exploit has been publicly disclose...
CVE-2025-11439
- EPSS 0.02%
- Veröffentlicht 08.10.2025 06:32:09
- Zuletzt bearbeitet 09.10.2025 16:18:15
A vulnerability was found in JhumanJ OpnForm up to 1.9.3. This issue affects some unknown processing of the file /show/integrations. Performing manipulation results in missing authorization. Remote exploitation of the attack is possible. The exploit ...
CVE-2025-11438
- EPSS 0.03%
- Veröffentlicht 08.10.2025 06:32:06
- Zuletzt bearbeitet 09.10.2025 16:17:50
A vulnerability has been found in JhumanJ OpnForm up to 1.9.3. This vulnerability affects unknown code of the file /custom-domains of the component API Endpoint. Such manipulation leads to missing authorization. The attack may be launched remotely. T...
CVE-2025-11437
- EPSS 0.02%
- Veröffentlicht 08.10.2025 06:02:06
- Zuletzt bearbeitet 09.10.2025 16:18:50
A flaw has been found in JhumanJ OpnForm up to 1.9.3. This affects an unknown part of the file /api/open/forms/ of the component Form Editor. This manipulation causes cross site scripting. The attack may be initiated remotely. The exploit has been pu...
CVE-2025-11436
- EPSS 0.04%
- Veröffentlicht 08.10.2025 05:32:12
- Zuletzt bearbeitet 09.10.2025 16:19:29
A vulnerability was detected in JhumanJ OpnForm up to 1.9.3. Affected by this issue is some unknown functionality of the file /answer. The manipulation results in unrestricted upload. The attack can be launched remotely. The exploit is now public and...
CVE-2025-11435
- EPSS 0.04%
- Veröffentlicht 08.10.2025 05:32:08
- Zuletzt bearbeitet 09.10.2025 16:20:09
A security vulnerability has been detected in JhumanJ OpnForm up to 1.9.3. Affected by this vulnerability is an unknown functionality of the file /show/submissions. The manipulation leads to cross site scripting. The attack can be initiated remotely....