CVE-2025-63561: Summerpearlgroup Vacation Rental Management Platform

High severity, CVSS 7.5. EPSS: 0.4% chance of exploitation in the next 30 days.

Summer Pearl Group Vacation Rental Management Platform prior to 1.0.2 is susceptible to a Slowloris-style Denial-of-Service (DoS) condition in the HTTP connection handling layer, where an attacker that opens and maintains many slow or partially-completed HTTP connections can exhaust the server’s connection pool and worker capacity, preventing legitimate users and APIs from accessing the service.

Affected products

  • Summerpearlgroup Vacation Rental Management Platform: before 1.0.2 (fixed in 1.0.2)

Published 2025-10-31. Last modified 2026-06-17.