CVE-2025-63010: Themesinflow Hercules Core

Medium severity, CVSS 4.9. EPSS: 0.2% chance of exploitation in the next 30 days.

Server-Side Request Forgery (SSRF) vulnerability in ThemesInflow Hercules Core hercules-core allows Server Side Request Forgery.This issue affects Hercules Core : from n/a through <= 7.4.

Affected products

Published 2025-12-09. Last modified 2026-10-07.