Unrated severityNVD Advisory· Published Jan 5, 2026· Updated Jan 6, 2026
CVE-2025-67397
CVE-2025-67397
Description
An issue in Passy v.1.6.3 allows a remote authenticated attacker to execute arbitrary commands via a crafted HTTP request using a specific payload injection.
Affected products
1- Passy/Passydescription
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
2News mentions
0No linked articles in our index yet.