CVE-2025-61506
EUVD-2025-20672703.02.2026, 18:16
An issue was discovered in MediaCrush thru 1.0.1 allowing remote unauthenticated attackers to upload arbitrary files of any size to the /upload endpoint.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| mediacrush | mediacrush | 𝑥 ≤ 1.0.1 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration