CVE-2025-58469

HIGH

QuLog Center <1.8.2.927 - CSRF

Title source: llm

Description

A cross-site request forgery (CSRF) vulnerability has been reported to affect QuLog Center. The remote attackers can then exploit the vulnerability to gain privileges or hijack user identities. We have already fixed the vulnerability in the following version: QuLog Center 1.8.2.927 ( 2025/09/17 ) and later

Scores

CVSS v3 8.8
EPSS 0.0009
EPSS Percentile 25.4%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

Classification

CWE
CWE-352
Status published

Affected Products (1)

qnap/qulog_center < 1.8.2.923

Timeline

Published Nov 07, 2025
Tracked Since Feb 18, 2026