Muhammad5235/HostBill-CVEs-2025

Muhammad5235/HostBill-CVEs-2025

Releases0
Recently found CVEs in Hostbill app Client and admin sides

CVE History

CVEPublishedCVSS v3CVSS v2
3.8 LOW

An issue in Hostbill v.2025-11-24 and 2025-12-01 allows a remote attacker to cause a denial of service via the Client Balance component

5.3 MEDIUM

An issue in Hostbill v.2025-11-24 and 2025-12-01 allows a remote attacker to cause a denial of service via the Checkout Authentication Flow component

4.9 MEDIUM

Cross Site Scripting vulnerability in Hostbill v.2025-11-24 and 2025-12-01 allows a remote attacker to execute arbitrary code

9.8 CRITICAL

An issue in Hostbill v.2025-11-24 and 2025-12-01 allows a remote attacker to execute arbitrary code and escalate privileges via the CSV registration field