Review reviewHigh
CVE-2025-50484
small crm
Improper session invalidation in the component /crm/change-password.php of PHPGurukul Small CRM v3.0 allows attackers to execute a session hijacking attack.
- CVSS
- 7.1
- EPSS
- 0.26% 17.8% percentile
- CISA KEV
- Not listed
- Published
- 2025.07.29