CVE-2025-15106Medium· 6.3▾ SunlitA weakness has been identified in getmaxun maxun up to 0.0.28. The affected element is the function router.get of the file server/src/routes/auth.ts of the component Authentication Endpoint. Executing manipulation can lead to improper au…
▾ Sunlit zone — Low / medium · no exploitation signal
impact 34.7 · likelihood 0.1 · exploitation 0
Need a working PoC? Pro members can cast a request and our team develops one — it lands right here.
Disclosure to exploitation, from the record and what we observed since indexing it.
Disclosed via NVD
Last analysed / modified upstream
0.4%
A weakness has been identified in getmaxun maxun up to 0.0.28. The affected element is the function router.get of the file server/src/routes/auth.ts of the component Authentication Endpoint. Executing manipulation can lead to improper authorization. The attack can be executed remotely. The exploit has been made available to the public and could be exploited. The vendor was contacted early about this disclosure but did not respond in any way.
maxun <= 0.0.28Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
Connected by shared product, vendor, weakness, or advisory.
CVE-2025-15105Low· 3.7A security flaw has been discovered in getmaxun maxun up to 0.0.28
CVE-2025-15118Medium· 4.3A security vulnerability has been detected in macrozheng mall up to 1.0.3
CVE-2026-105382High· 7.3A flaw has been found in onetwothreeneth HospitalManagementSystem up to 9ef91ed6007314b6473110ed699dff76d158f61d
CVE-2026-105284Critical· 10.0A weakness has been identified in Totolink A3002MU 1.0.0-B20230403.1455
CVE-2024-14045Medium· 6.3A weakness has been identified in OpenBoxes up to 0.9.2
CVE-2025-15213Medium· 4.3A vulnerability has been found in code-projects Student File Management System 1.0