All 4 CVE vulnerabilities found in hfly, with AI-generated Chinese analysis, references, and POCs.
Vendor: baowzh
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2025-14522 | baowzh hfly upload_json.php unrestricted upload CWE-434 | 6.3 | Medium | 2025-12-11 |
| CVE-2025-14521 | baowzh hfly download path traversal CWE-22 | 4.3 | Medium | 2025-12-11 |
| CVE-2025-14520 | baowzh hfly delfile path traversal CWE-22 | 5.4 | Medium | 2025-12-11 |
| CVE-2025-14519 | baowzh hfly advtext add cross site scripting CWE-79 | 3.5 | Low | 2025-12-11 |
All 4 known CVE vulnerabilities affecting hfly with full Chinese analysis, references, and POCs where available.