CVE-2025-62423: Oxygenz Clipbucket
High severity, CVSS 7.2. EPSS: 0.5% chance of exploitation in the next 30 days.
ClipBucket V5 provides open source video hosting with PHP. In version5.5.2 - #140 and earlier, a Blind SQL injection vulnerability exists in the Admin Area’s “/admin_area/login_as_user.php” file. Exploiting this vulnerability requires access privileges to the Admin Area.
Affected products
- Oxygenz Clipbucket: from 5.3, before 5.5.2-142 (fixed in 5.5.2-142)
Published 2025-10-16. Last modified 2026-10-09.