ZeroHour

CVE-2025-55127

PoC
CVSS 3.1
5.4 medium
EPSS
<1%p14
Published
()
Modified
Description

HackerOne community member Dao Hoang Anh (yoyomiski) has reported an improper neutralization of whitespace in the username when adding new users. A username with leading or trailing whitespace could be virtually indistinguishable from its legitimate counterpart when the username is displayed in the UI, potentially leading to confusion.

Vendors
aquaplatform
Products
revive adserver
Weakness
CWE-156
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.