Home
Home
Trends
Trends
Vulnerabilities
Vulnerabilities
News
News
Researchers
Researchers
Why dbugs?
Why dbugs?
Settings

Patryk Konior

#31420of 56,333
8.8Total CVSS
Vulnerabilities · 1
PT-2025-45601
8.8
2025-11-10
Cloudinary · Cloudinary · CVE-2025-12613
**Name of the Vulnerable Software and Affected Versions** cloudinary versions prior to 2.7.0 **Description** The package is susceptible to Arbitrary Argument Injection because of improper parsing of parameter values that include an ampersand (`&`). This allows an attacker to inject additional, unintended parameters. This could lead to malicious outcomes, such as bypassing security checks, altering data, or manipulating the application's behavior. **Recommendations** Update to version 2.7.0 or later.