VYPR
High severityNVD Advisory· Published Mar 10, 2026· Updated Jun 17, 2026

CVE-2025-13957

CVE-2025-13957

Description

CWE-798: Use of Hard-coded Credentials vulnerability exists that could cause information disclosure and remote code execution when SOCKS Proxy is enabled, and administrator credentials and PostgreSQL database credentials are known. SOCKS Proxy is disabled by default.

Affected products

2

Patches

Vulnerability mechanics

References

1

News mentions

1