VYPR

Cloudlog

by GitHub

CVEs (1)

  • CVE-2025-64084MedNov 14, 2025
    risk 0.35cvss 5.4epss 0.00

    An authenticated SQL injection vulnerability exists in Cloudlog 2.7.5 and earlier. The vucc_details_ajax function in application/controllers/Awards.php does not properly sanitize the user-supplied Gridsquare POST parameter. This allows a remote, authenticated attacker to execute…