Missing Authorization Vulnerability in Md Yeasin Ul Haider URL Shortener by Patchstack
CVE-2025-28965
8.6HIGH
What is CVE-2025-28965?
A missing authorization vulnerability in the Md Yeasin Ul Haider URL Shortener allows unauthorized access to functionalities not properly constrained by Access Control Lists (ACLs). This can potentially expose sensitive operations to users without the required permissions, affecting versions from 3.0.7 and earlier.
Affected Version(s)
URL Shortener <= 3.0.7