Server-Side Request Forgery in ShopXO Product by Morysummer
CVE-2025-28093
6.3MEDIUM
What is CVE-2025-28093?
The ShopXO v6.4.0 application is prone to Server-Side Request Forgery (SSRF) vulnerabilities due to improper handling of Email Settings. When exploited, this allows attackers to send unauthorized requests from the server, potentially accessing internal resources and sensitive information. It is crucial for users to apply necessary security measures to mitigate the risks associated with this vulnerability.