CVE-2025-65602 | ChanCMS 3.3.4 POST /vip/v1/file/save special elements used in a template engine
A vulnerability classified as critical was found in ChanCMS 3.3.4. This impacts an unknown function of the file /vip/v1/file/save of the component POST Handler. Such manipulation leads to improper neutralization of special elements used in a template engine.
This vulnerability is uniquely identified as CVE-2025-65602. The attack can be launched remotely. No exploit exists.