← Back to browse · API

CVE-2025-49372

Severity
CRITICAL
CVSS
10.0
EPSS
0.00446
Risk score
40.16
CISA KEV
No
PoC
No
Published
2025-11-06
Modified
2026-04-28
First seen
2026-08-07
Aliases
EUVD-2025-38015, GHSA-WJ4Q-GPCG-GVVM
Products
VillaTheme:HAPPY 0 ≤1.0.7
Sources
euvd EUVD-2025-38015

Description

Improper Control of Generation of Code ('Code Injection') vulnerability in VillaTheme HAPPY happy-helpdesk-support-ticket-system allows Remote Code Inclusion.This issue affects HAPPY: from n/a through <= 1.0.7.

References