Denial of Service Vulnerability in Mayswind EZBookkeeping
CVE-2025-65519
6.5MEDIUM
What is CVE-2025-65519?
Mayswind EZBookkeeping versions up to 1.2.0 are exposed to a Denial of Service vulnerability through inadequate validation of nesting depth during JSON and XML file imports. This oversight can be exploited by authenticated attackers who upload maliciously crafted files. The vulnerability leads to excessive CPU consumption, resulting in service degradation or total unavailability, posing significant risks to users and their operations.
