CVE-2025-7014

Session Fixation vulnerability in QR Menu Pro Smart Menu Systems Menu Panel allows Session Hijacking. This issue affects Menu Panel: through 29012026.  NOTE: The vendor was contacted early about this disclosure but did not respond in any way.
Configurations

Configuration 1 (hide)

cpe:2.3:a:qrmenumpro:menu_panel:29012026:*:*:*:*:*:*:*

History

05 Jun 2026, 15:16

Type Values Removed Values Added
Summary (en) Session Fixation vulnerability in QR Menu Pro Smart Menu Systems Menu Panel allows Session Hijacking.This issue affects Menu Panel: through 29012026.  NOTE: The vendor was contacted early about this disclosure but did not respond in any way. (en) Session Fixation vulnerability in QR Menu Pro Smart Menu Systems Menu Panel allows Session Hijacking. This issue affects Menu Panel: through 29012026.  NOTE: The vendor was contacted early about this disclosure but did not respond in any way.
References
  • () https://siberguvenlik.gov.tr/guvenlik-bildirimleri/detay/tr-26-0007 -

09 Mar 2026, 13:40

Type Values Removed Values Added
References () https://www.usom.gov.tr/bildirim/tr-26-0007 - () https://www.usom.gov.tr/bildirim/tr-26-0007 - Third Party Advisory
Summary
  • (es) Vulnerabilidad de fijación de sesión en el Panel de Menú de QR Menu Pro Smart Menu Systems permite el secuestro de sesión. Este problema afecta al Panel de Menú: hasta el 29012026. NOTA: El proveedor fue contactado con antelación sobre esta divulgación pero no respondió de ninguna manera.
CPE cpe:2.3:a:qrmenumpro:menu_panel:29012026:*:*:*:*:*:*:*
First Time Qrmenumpro menu Panel
Qrmenumpro

29 Jan 2026, 14:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-01-29 14:16

Updated : 2026-06-05 15:16


NVD link : CVE-2025-7014

Mitre link : CVE-2025-7014

CVE.ORG link : CVE-2025-7014


JSON object : View

Products Affected

qrmenumpro

  • menu_panel
CWE
CWE-384

Session Fixation