VYPR
Critical severity9.8NVD Advisory· Published Aug 20, 2025· Updated Jun 17, 2026

CVE-2025-50904

CVE-2025-50904

Description

There is an authentication bypass vulnerability in WinterChenS my-site thru commit 6c79286 (2025-06-11). An attacker can exploit this vulnerability to access /admin/ API without any token.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3
  • cpe:2.3:a:winterchens:my-site:*:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:a:winterchens:my-site:*:*:*:*:*:*:*:*range: <=2025-06-11
    • (no CPE)
    • (no CPE)range: <=commit 6c79286 (2025-06-11)

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.