CVE-2025-1928

CRITICAL

Restajet Online Food Delivery System <1920191225 - Info Disclosure

Title source: llm
STIX 2.1

Description

Improper Restriction of Excessive Authentication Attempts vulnerability in Restajet Information Technologies Inc. Online Food Delivery System allows Password Recovery Exploitation. This issue affects Online Food Delivery System: through 19122025. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.

References (2)

Core 2
Core References
Third Party Advisory government-resource broken-link
https://www.usom.gov.tr/bildirim/tr-25-0469

Scores

CVSS v3 9.1
EPSS 0.0032
EPSS Percentile 23.7%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N

CISA SSVC

Vulnrichment
Exploitation none
Automatable yes
Technical Impact total

Details

CWE
CWE-307
Status published
Products (2)
restajet/online_food_delivery_system
Restajet Information Technologies Inc./Online Food Delivery System < 19122025
Published Dec 19, 2025
Tracked Since Feb 18, 2026