{"resultsPerPage":1,"startIndex":0,"totalResults":1,"format":"NVD_CVE","version":"2.0","timestamp":"2026-06-14T09:51:26.186","vulnerabilities":[{"cve":{"id":"CVE-2025-21618","sourceIdentifier":"security-advisories@github.com","published":"2025-01-06T17:15:47.660","lastModified":"2026-04-15T00:35:42.020","vulnStatus":"Deferred","cveTags":[],"descriptions":[{"lang":"en","value":"NiceGUI is an easy-to-use, Python-based UI framework. Prior to 2.9.1, authenticating with NiceGUI logged in the user for all browsers, including browsers in incognito mode. This vulnerability is fixed in 2.9.1."},{"lang":"es","value":"NiceGUI es un framework de interfaz de usuario fácil de usar basado en Python. Antes de la versión 2.9.1, la autenticación con NiceGUI permitía iniciar sesión al usuario en todos los navegadores, incluidos los navegadores en modo incógnito. Esta vulnerabilidad se solucionó en la versión 2.9.1."}],"metrics":{"cvssMetricV31":[{"source":"security-advisories@github.com","type":"Secondary","cvssData":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N","baseScore":7.5,"baseSeverity":"HIGH","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"NONE","integrityImpact":"HIGH","availabilityImpact":"NONE"},"exploitabilityScore":3.9,"impactScore":3.6}]},"weaknesses":[{"source":"security-advisories@github.com","type":"Secondary","description":[{"lang":"en","value":"CWE-287"}]}],"references":[{"url":"https://github.com/zauberzeug/nicegui/commit/1621a4ba6a06676b8094362d36623551e651adc1","source":"security-advisories@github.com"},{"url":"https://github.com/zauberzeug/nicegui/security/advisories/GHSA-v6jv-p6r8-j78w","source":"security-advisories@github.com"}]}}]}