Vulnerability Database

315,362

Total vulnerabilities in the database

CVE-2025-63952

A Cross-Site Request Forgery (CSRF) in the /mwapi?method=add-user component of Magewell Pro Convert v1.2.213 allows attackers to arbitrarily create accounts via a crafted GET request.

  • Published: Nov 24, 2025
  • Updated: Dec 31, 2025
  • CVE: CVE-2025-63952
  • Severity: Medium
  • Exploit:

CVSS v3:

  • Severity: Medium
  • Score: 5.7
  • AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:H/A:N

CWEs: