Security Advisory

CVE-2025-65474

9.8
CRITICAL

Vulnerability Description

An arbitrary file rename vulnerability in the /admin/manager.php component of EasyImages 2.0 v2.8.6 and below allows attackers to execute arbitrary code via renaming a PHP file to a SVG format.
Published Date December 11, 2025
Official Source NIST NVD Advisory