Monitor vulnerabilities like this one.
Sign up free to get alerted when software you use is affected.
9.9
Lendiz allows attackers to upload malicious files to a web server
CVE-2025-68553
Summary
An attacker can upload a malicious file to a web server running Lendiz, potentially allowing them to take control of the server. This is a security risk because an attacker could use the uploaded file to compromise the server and access sensitive data. To fix this, update to version 2.0.1 or later.
Original title
Unrestricted Upload of File with Dangerous Type vulnerability in zozothemes Lendiz lendiz allows Upload a Web Shell to a Web Server.This issue affects Lendiz: from n/a through < 2.0.1.
Original description
Unrestricted Upload of File with Dangerous Type vulnerability in zozothemes Lendiz lendiz allows Upload a Web Shell to a Web Server.This issue affects Lendiz: from n/a through < 2.0.1.
nvd CVSS3.1
9.9
Vulnerability type
CWE-434
Unrestricted File Upload
Published: 5 Mar 2026 · Updated: 13 Mar 2026 · First seen: 6 Mar 2026