Critical severity9.1NVD Advisory· Published Feb 26, 2025· Updated Jul 5, 2026
CVE-2025-25785
CVE-2025-25785
Description
JizhiCMS v2.5.4 was discovered to contain a Server-Side Request Forgery (SSRF) via the component \c\PluginsController.php. This vulnerability allows attackers to perform an intranet scan via a crafted request.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3Patches
Vulnerability mechanics
References
1- www.jizhicms.cnnvdProduct
News mentions
0No linked articles in our index yet.