CVE-2025-62717

Emlog is an open source website building system. In version 2.5.23, Emlog Pro is vulnerable to a session verification code error due to a clearing logic error. This means the verification code could be reused anywhere an email verification code is required. This issue has been fixed in commit 1f726df.
Configurations

Configuration 1 (hide)

cpe:2.3:a:emlog:emlog:2.5.23:*:*:*:pro:*:*:*

History

No history.

Information

Published : 2025-10-24 21:16

Updated : 2025-10-28 14:15


NVD link : CVE-2025-62717

Mitre link : CVE-2025-62717

CVE.ORG link : CVE-2025-62717


JSON object : View

Products Affected

emlog

  • emlog
CWE
CWE-287

Improper Authentication

NVD-CWE-noinfo