High severityNVD Advisory· Published Mar 11, 2025· Updated Apr 15, 2026
CVE-2025-22213
CVE-2025-22213
Description
Inadequate checks in the Media Manager allowed users with "edit" privileges to change file extension to arbitrary extension, including .php and other potentially executable extensions.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
1Patches
Vulnerability mechanics
References
1News mentions
0No linked articles in our index yet.