Deserialization Vulnerability in LinZhaoguan pb-cms Product
CVE-2025-2043
What is CVE-2025-2043?
A deserialization vulnerability has been identified in LinZhaoguan's pb-cms 1.0.0, specifically within the functionality of the Add New Topic Handler in the /admin#themes file. The issue arises from improper handling of the Topic Key parameter, resulting in a potential exploitation that could be initiated remotely. Given the nature of this vulnerability, attackers could execute arbitrary code and gain unauthorized access to systems using this software. Users are advised to review their security measures and implement any necessary updates to mitigate risks associated with this vulnerability.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
pb-cms 1.0.0
References
CVSS V4
Timeline
- ๐พ
Exploit known to exist
Vulnerability published
Vulnerability Reserved
