CVE-2025-8549 | atjiu pybbs up to 6.0.0 UserAdminController.java update weak password (Issue 201)
A vulnerability was found in atjiu pybbs up to 6.0.0. It has been classified as critical. Affected is the function update of the file src/main/java/co/yiiu/pybbs/controller/admin/UserAdminController.java. The manipulation leads to weak password requirements.
This vulnerability is traded as CVE-2025-8549. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
It is recommended to apply a patch to fix this issue.