Vulnerabilities (CVE)

Filtered by vendor Mohammadzain2008
Filtered by product Linkr
Angry Yack Logo
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2025-59334 1 Mohammadzain2008 1 Linkr 2025-10-08 N/A 9.6 CRITICAL
Linkr is a lightweight file delivery system that downloads files from a webserver. Linkr versions through 2.0.0 do not verify the integrity or authenticity of .linkr manifest files before using their contents, allowing a tampered manifest to inject arbitrary file entries into a package distribution. An attacker can modify a generated .linkr manifest (for example by adding a new entry with a malicious URL) and when a user runs the extract command the client downloads the attacker-supplied file wi ...

Show More