CVE-2025-55127

HackerOne community member Dao Hoang Anh (yoyomiski) has reported an improper neutralization of whitespace in the username when adding new users. A username with leading or trailing whitespace could be virtually indistinguishable from its legitimate counterpart when the username is displayed in the UI, potentially leading to confusion.
References
Configurations

No configuration.

History

20 Nov 2025, 22:15

Type Values Removed Values Added
CWE CWE-156
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 5.4

20 Nov 2025, 19:16

Type Values Removed Values Added
New CVE

Information

Published : 2025-11-20 19:16

Updated : 2025-11-21 15:13


NVD link : CVE-2025-55127

Mitre link : CVE-2025-55127

CVE.ORG link : CVE-2025-55127


JSON object : View

Products Affected

No product.

CWE
CWE-156

Improper Neutralization of Whitespace