Skip to main content

CVE-2025-7897: Missing Authentication in harry0703 MoneyPrinterTurbo

Medium
VulnerabilityCVE-2025-7897cvecve-2025-7897
Published: Sun Jul 20 2025 (07/20/2025, 15:02:04 UTC)
Source: CVE Database V5
Vendor/Project: harry0703
Product: MoneyPrinterTurbo

Description

A vulnerability was found in harry0703 MoneyPrinterTurbo up to 1.2.6 and classified as critical. Affected by this issue is the function verify_token of the file app/controllers/base.py of the component API Endpoint. The manipulation leads to missing authentication. The attack may be launched remotely.

Technical Details

Data Version
5.1
Assigner Short Name
VulDB
Date Reserved
2025-07-19T11:20:22.912Z
Cvss Version
4.0
State
PUBLISHED

Threat ID: 687d085ca83201eaac02fc4f

Added to database: 7/20/2025, 3:16:44 PM

Last updated: 7/20/2025, 3:16:44 PM

Views: 1

Actions

Please log in to the Console to use AI analysis features.

Need enhanced features?

Contact root@offseq.com for Pro access with improved analysis and higher rate limits.

Latest Threats