Medium severity6.5NVD Advisory· Published Mar 4, 2025· Updated Jun 17, 2026
CVE-2025-26182
CVE-2025-26182
Description
An issue in xxyopen novel plus v.4.4.0 and before allows a remote attacker to execute arbitrary code via the PageController.java file
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3cpe:2.3:a:xxyopen:novel-plus:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:xxyopen:novel-plus:*:*:*:*:*:*:*:*range: <=4.4.0
- (no CPE)range: <=4.4.0
- xxyopen novel plus/xxyopen novel plusdescription
Patches
Vulnerability mechanics
References
1- gist.github.com/GSBP0/007355c5f6bd213264ae1c35c347e5ccnvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.