VYPR
Medium severity5.3NVD Advisory· Published Aug 18, 2025· Updated Jun 17, 2026

CVE-2025-9100

CVE-2025-9100

Description

A security flaw has been discovered in zhenfeng13 My-Blog 1.0.0. This vulnerability affects unknown code of the file /blog/comment of the component Frontend Blog Article Comment Handler. The manipulation leads to authentication bypass by capture-replay. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3
  • cpe:2.3:a:zhenfeng13:my-blog:1.0:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:a:zhenfeng13:my-blog:1.0:*:*:*:*:*:*:*
    • (no CPE)range: = 1.0.0
    • (no CPE)range: 1.0.0

Patches

Vulnerability mechanics

References

5

News mentions

0

No linked articles in our index yet.