CVE-2025-36727: SimpleHelp Inclusion of functionality from untrusted control sphere
Published Jul 25, 2025
·Updated
Inclusion of Functionality from Untrusted Control Sphere vulnerability in Simplehelp.This issue affects Simplehelp: before 5.5.12.
Affected Software
1 affected component
Simple-help Simplehelp<5.5.12
Event History
Jul 25, 2025
CVE Published
via MITRE·04:37 PM
Data Sourced
via MITRE·04:37 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·05:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-36727?
CVE-2025-36727 has been classified as a high-severity vulnerability due to the risk of executing untrusted functionalities.
2
How do I fix CVE-2025-36727?
To fix CVE-2025-36727, update Simplehelp to version 5.5.12 or later.
3
What type of vulnerability is CVE-2025-36727?
CVE-2025-36727 is categorized as an Inclusion of Functionality from Untrusted Control Sphere vulnerability.
4
Which versions of Simplehelp are affected by CVE-2025-36727?
Versions of Simplehelp prior to 5.5.12 are affected by CVE-2025-36727.
5
What can happen if CVE-2025-36727 is exploited?
Exploitation of CVE-2025-36727 can lead to unauthorized execution of functions within the application.