Piextract Soop-Clm vulnerabilities
3 known vulnerabilities affecting piextract/soop-clm.
Total CVEs
3
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL1HIGH1MEDIUM1
Vulnerabilities
Page 1 of 1
CVE-2025-3011P2CRITICALCVSS 9.8≥ 5.1.0, ≤ 5.3.02025-03-31
CVE-2025-3011 [CRITICAL] CWE-89 CVE-2025-3011: SOOP-CLM from PiExtract has a SQL Injection vulnerability, allowing unauthenticated remote attackers
SOOP-CLM from PiExtract has a SQL Injection vulnerability, allowing unauthenticated remote attackers to inject arbitrary SQL commands to read, modify, and delete database contents.
nvd
CVE-2025-11673P3HIGHCVSS 7.2v5.2v5.32025-10-13
CVE-2025-11673 [HIGH] CWE-912 CVE-2025-11673: SOOP-CLM developed by PiExtract has a Hidden Functionality vulnerability, allowing privileged remote
SOOP-CLM developed by PiExtract has a Hidden Functionality vulnerability, allowing privileged remote attackers to exploit a hidden functionality to execute arbitrary code on the server.
nvd
CVE-2025-11674P3MEDIUMCVSS 6.8v5.2v5.32025-10-13
CVE-2025-11674 [MEDIUM] CWE-918 CVE-2025-11674: SOOP-CLM developed by PiExtract has a Server-Side Request Forgery vulnerability, allowing privileged
SOOP-CLM developed by PiExtract has a Server-Side Request Forgery vulnerability, allowing privileged remote attackers to read server files or probe internal network information.
nvd