CVE-2025-11222 MEDIUM

CVE-2025-11222

Vendor Line Corporation
Product Central Dogma
Published December 4, 2025
Last update December 4, 2025

CVSS base score

6.1/10
Attack vector Network
Attack complexity Low
Privileges required None
User interaction Required
Confidentiality Low
Integrity Low

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N

What the vulnerability does

01Description

Central Dogma versions before 0.78.0 contain an Open Redirect vulnerability that allows attackers to redirect users to untrusted sites via specially crafted URLs, potentially facilitating phishing attacks and credential theft.

Key dates

02Disclosure timeline

December 4, 2025 CVE published
December 4, 2025 Record updated