You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Copy file name to clipboardExpand all lines: advisories/github-reviewed/2025/11/GHSA-xmh7-35v2-fp6h/GHSA-xmh7-35v2-fp6h.json
+31-6Lines changed: 31 additions & 6 deletions
Original file line number
Diff line number
Diff line change
@@ -1,11 +1,12 @@
1
1
{
2
2
"schema_version": "1.4.0",
3
3
"id": "GHSA-xmh7-35v2-fp6h",
4
-
"modified": "2025-11-30T09:30:18Z",
4
+
"modified": "2025-12-12T16:52:27Z",
5
5
"published": "2025-11-30T09:30:18Z",
6
6
"aliases": [
7
7
"CVE-2025-13785"
8
8
],
9
+
"summary": "Skuul School Management System has a Sensitive Data Exposure Vulnerability in Uploaded Images",
9
10
"details": "A security vulnerability has been detected in yungifez Skuul School Management System up to 2.6.5. This issue affects some unknown processing of the file /user/profile of the component Image Handler. Such manipulation leads to information disclosure. The attack may be performed from remote. The exploit has been disclosed publicly and may be used. The vendor was contacted early about this disclosure but did not respond in any way.",
0 commit comments