Denial of Service Vulnerability in Akaunting by Akaunting
CVE-2025-55521

6.5MEDIUM

Key Information:

Vendor

Akaunting

Status
Vendor
CVE Published:
21 August 2025

What is CVE-2025-55521?

Akaunting v3.1.18 is susceptible to a Denial of Service (DoS) vulnerability in the /settings/localisation component. This security issue allows authenticated attackers to exploit the system by sending a specially crafted POST request, which can lead to service disruption and unavailability. It highlights the importance of securing application endpoints to prevent unauthorized access and potential service interruptions.

References

CVSS V3.1

Score:
6.5
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.