Server-Side Request Forgery Vulnerability in URL Shortener by Md Yeasin Ul Haider
CVE-2025-28963
What is CVE-2025-28963?
A Server-Side Request Forgery (SSRF) vulnerability has been identified in the URL Shortener developed by Md Yeasin Ul Haider. This security flaw allows attackers to send crafted requests from the server, potentially leading to unauthorized access and exposure of sensitive information. The vulnerability affects all versions of the URL Shortener plugin up to 3.0.7, posing significant risks to the integrity of hosted services. Best practices for remediation should be implemented promptly to safeguard against possible exploitation.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
URL Shortener <= 3.0.7
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved