← Back to browse · API

CVE-2025-22630

Severity
CRITICAL
CVSS
9.9
EPSS
0.01116
Risk score
39.99
CISA KEV
No
PoC
No
Published
2025-02-14
Modified
2026-04-28
First seen
2026-08-07
Aliases
EUVD-2025-2895, GHSA-3V78-X6P4-8R93
Products
Marketing Fire:Widget Options 0 ≤4.1.0
Sources
euvd EUVD-2025-2895

Description

Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability in Marketing Fire Widget Options widget-options allows OS Command Injection.This issue affects Widget Options: from n/a through <= 4.1.0.

References