THREAT OPS › Threat News › [NVD] CVE-2025-13803 (HIGH 7.3) — A vulnerability was identified in MediaCrush 1.0.0/1.0.1. The affected element is an unknown function of the file /mediacrush/paths.py of the component Header Handler. Such manipulation of the argument Host leads to improper neutralization of http headers for scripting syntax. Th
[NVD] CVE-2025-13803 (HIGH 7.3) — A vulnerability was identified in MediaCrush 1.0.0/1.0.1. The affected element is an unknown function of the file /mediacrush/paths.py of the component Header Handler. Such manipulation of the argument Host leads to improper neutralization of http headers for scripting syntax. Th
CVE-2025-13803 CVSS: 7.3 HIGH Published: 2025-12-01T03:15:46.390
A vulnerability was identified in MediaCrush 1.0.0/1.0.1. The affected element is an unknown function of the file /mediacrush/paths.py of the component Header Handler. Such manipulation of the argument Host leads to improper neutralization of http headers for scripting syntax. The attack can be launched remotely.
Indicators of compromise
- CVE-2025-13803cve
Original source: https://nvd.nist.gov/vuln/detail/CVE-2025-13803