CVE-2025-63561: Summerpearlgroup Vacation Rental Management Platform
High severity, CVSS 7.5. EPSS: 0.4% chance of exploitation in the next 30 days.
Summer Pearl Group Vacation Rental Management Platform prior to 1.0.2 is susceptible to a Slowloris-style Denial-of-Service (DoS) condition in the HTTP connection handling layer, where an attacker that opens and maintains many slow or partially-completed HTTP connections can exhaust the server’s connection pool and worker capacity, preventing legitimate users and APIs from accessing the service.
Affected products
- Summerpearlgroup Vacation Rental Management Platform: before 1.0.2 (fixed in 1.0.2)
Published 2025-10-31. Last modified 2026-06-17.