Description

Bambuddy is a self-hosted print archive and management system for Bambu Lab 3D printers. Prior to version 0.1.7, a hardcoded secret key used for signing JWTs is checked into source code and ManyAPI routes do not check authentication. This issue has been patched in version 0.1.7.

INFO

Published Date :

2026-02-04T20:06:30.538Z

Last Modified :

2026-02-06T18:41:07.205Z

Source :

GitHub_M
AFFECTED PRODUCTS

The following products are affected by CVE-2026-25505 vulnerability.

Vendors Products
Bambuddy
  • Bambuddy
Maziggy
  • Bambuddy

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact