Description

pyLoad is the free and open-source Download Manager written in pure Python. Prior to version 0.5.0b3.dev91, the parameter add_links in API /json/add_package is vulnerable to SQL Injection. Attackers can modify or delete data in the database, causing data errors or loss. This issue has been patched in version 0.5.0b3.dev91.

INFO

Published Date :

2025-08-11T22:21:52.225Z

Last Modified :

2025-08-12T15:49:56.057Z

Source :

GitHub_M
AFFECTED PRODUCTS

The following products are affected by CVE-2025-55156 vulnerability.

Vendors Products
Pyload
  • Pyload

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Attack Requirements
Privileges Required
User Interaction
VS Confidentiality
VS Integrity
VS Availability
SS Confidentiality
SS Integrity
SS Availability