VYPR

Vedo Suite

by Bottinelli Informatical

CVEs (1)

  • CVE-2025-51058Aug 6, 2025
    risk 0.00cvss epss 0.00

    Bottinelli Informatical Vedo Suite 2024.17 is vulnerable to Server-side Request Forgery (SSRF) in the /api_vedo/video/preview endpoint, which allows remote authenticated attackers to trigger HTTP requests towards arbitrary remote paths via the "file" URL parameter.