← Back to browse · API

CVE-2025-49060

Severity
CRITICAL
CVSS
10.0
EPSS
0.00425
Risk score
40.15
CISA KEV
No
PoC
No
Published
2025-10-22
Modified
2026-04-28
First seen
2026-08-07
Aliases
EUVD-2025-35558, GHSA-Q927-C92H-36G4
Products
CMSSuperHeroes:Wastia 0 ≤1.1.3
Sources
euvd EUVD-2025-35558

Description

Unrestricted Upload of File with Dangerous Type vulnerability in CMSSuperHeroes Wastia wastia allows Upload a Web Shell to a Web Server.This issue affects Wastia: from n/a through < 1.1.3.

References