CVE-2025-64281

CRITICAL

Centralsquare Community Development - Authentication Bypass

Title source: rule
STIX 2.1

Description

An Authentication Bypass issue in CentralSquare Community Development 19.5.7 allows attackers to access the admin panel without admin credentials.

Scores

CVSS v3 9.8
EPSS 0.0010
EPSS Percentile 26.8%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable yes
Technical Impact total

Details

CWE
CWE-288
Status published
Products (1)
centralsquare/community_development 19.5.7
Published Nov 12, 2025
Tracked Since Feb 18, 2026