← Back to browse · API

CVE-2025-26936

Severity
CRITICAL
CVSS
10.0
EPSS
0.00477
Risk score
40.17
CISA KEV
No
PoC
No
Published
2025-03-10
Modified
2026-04-28
First seen
2026-08-07
Aliases
EUVD-2025-7721, GHSA-93G2-PF5Q-HQXR
Products
NotFound:Fresh Framework 0 ≤1.70.0
Sources
euvd EUVD-2025-7721

Description

Improper Control of Generation of Code ('Code Injection') vulnerability in FRESHFACE Fresh Framework fresh-framework allows Code Injection.This issue affects Fresh Framework: from n/a through <= 1.70.0.

References