CVE-2025-68001
Unrestricted Upload of File with Dangerous Type vulnerability in garidium g-FFL Checkout g-ffl-checkout allows Upload a Web Shell to a Web Server.This issue affects g-FFL Checkout: from n/a through <= 2.1.0.
- CVSS 3.1
- 10.0 CRITICAL
- EPSS
- 0.6% (47th percentile)
- Weakness
- CWE-434
- NVD status
- Deferred
- Published
- 2026-01-22
- Attack patterns
- CAPEC-650
- Entry point
- document request body
- Path
- /wp-admin/admin-ajax.php
CVE-2025-68001 at NVD
3 known exploits for CVE-2025-68001
Proof-of-concept code and exploit modules indexed by Sploitus