code-gen <=2.0.6 is vulnerable to Incorrect Access Control. The project does not have permission control allowing anyone to access such projects.
The product does not restrict or incorrectly restricts access to a resource from an unauthorized actor.
Link | Tags |
---|---|
https://gitee.com/durcframework/code-gen | product |
https://github.com/yxzrw/CVE-2025-29705 | third party advisory exploit |