CVE-2025-11029
A weakness has been identified in givanz Vvveb up to 1.0.7.2. This vulnerability affects unknown code. Executing manipulation can lead to cross-site request forgery. The attack can be executed remotely. The exploit has been made available to the public and could be exploited. Once again the project maintainer reacted very professional: "I accept the existence of these vulnerabilities. (...) I fixed the code to remove these vulnerabilities and will push the code to github and make a new release."
- Affected products
- Givanz Vvveb
- Vvveb
- ≤ 1.0.7.2
- CVSS 3.1
- 8.8 HIGH
- EPSS
- 0.3% (21th percentile)
- Weakness
- CWE-352, CWE-862
- NVD status
- Analyzed
- Published
- 2025-09-26
CVE-2025-11029 at NVD
No indexed exploits for CVE-2025-11029 yet
Our index is partial: it proves presence, never absence
No exploit for CVE-2025-11029 has been indexed yet. Our index is built from live traffic and upstream syncs, so this page can only say what it knows — not that no exploit exists.