Zip Slip Vulnerability in iceScrum v7.54 Pro On-prem
CVE-2025-60786
8.8HIGH
What is CVE-2025-60786?
A Zip Slip vulnerability exists in the import Project component of iceScrum v7.54 Pro On-prem, allowing attackers to upload specially crafted Zip files. This flaw enables unauthorized execution of arbitrary code, potentially compromising the integrity of the server and the confidentiality of stored data. Businesses using the affected version should implement immediate security measures to mitigate the risks associated with this vulnerability.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
References
CVSS V3.1
Score:
8.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved
