CVE-2025-65113

ClipBucket v5 is an open source video sharing platform. Prior to version 5.5.2 - #164, an authorization bypass vulnerability in the AJAX flagging system allows any unauthenticated user to flag any content (users, videos, photos, collections) on the platform. This can lead to mass flagging attacks, content disruption, and moderation system abuse. This issue has been patched in version 5.5.2 - #164.
Configurations

Configuration 1 (hide)

cpe:2.3:a:oxygenz:clipbucket:*:*:*:*:*:*:*:*

History

03 Dec 2025, 21:51

Type Values Removed Values Added
CPE cpe:2.3:a:oxygenz:clipbucket:*:*:*:*:*:*:*:*
First Time Oxygenz clipbucket
Oxygenz
References () https://github.com/MacWarrior/clipbucket-v5/commit/a83b807e592f85d98f1f156bd3cbb1ffcc230233 - () https://github.com/MacWarrior/clipbucket-v5/commit/a83b807e592f85d98f1f156bd3cbb1ffcc230233 - Patch
References () https://github.com/MacWarrior/clipbucket-v5/security/advisories/GHSA-9f8v-vph8-pq6q - () https://github.com/MacWarrior/clipbucket-v5/security/advisories/GHSA-9f8v-vph8-pq6q - Exploit, Vendor Advisory

01 Dec 2025, 20:15

Type Values Removed Values Added
References () https://github.com/MacWarrior/clipbucket-v5/security/advisories/GHSA-9f8v-vph8-pq6q - () https://github.com/MacWarrior/clipbucket-v5/security/advisories/GHSA-9f8v-vph8-pq6q -

29 Nov 2025, 01:16

Type Values Removed Values Added
New CVE

Information

Published : 2025-11-29 01:16

Updated : 2025-12-03 21:51


NVD link : CVE-2025-65113

Mitre link : CVE-2025-65113

CVE.ORG link : CVE-2025-65113


JSON object : View

Products Affected

oxygenz

  • clipbucket
CWE
CWE-770

Allocation of Resources Without Limits or Throttling