CVE-2025-0769: PixelYourSite 10.1.1.1 - Insecure deserialization
PixelYourSite - Your smart PIXEL (TAG) and API Manager 10.1.1.1 was found to be vulnerable. Unvalidated user input is used directly in an unserialize function in myapp/modules/facebook/facebook-server-a sync-task.php.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-0769?
CVE-2025-0769 has been classified as a medium severity vulnerability due to potential remote code execution risks from deserialization of unvalidated user input.
How do I fix CVE-2025-0769?
To fix CVE-2025-0769, ensure that all user inputs are properly validated before being used in the unserialize function.
Which version of PixelYourSite is affected by CVE-2025-0769?
CVE-2025-0769 affects PixelYourSite - Your smart PIXEL (TAG) and API Manager version 10.1.1.1.
What impact does CVE-2025-0769 have on the affected software?
The impact of CVE-2025-0769 includes vulnerabilities that could allow an attacker to execute arbitrary PHP code on the server.
Is there a patch available for CVE-2025-0769?
Currently, there is no official patch for CVE-2025-0769, but users should monitor the vendor's website for updates.