CVE-2025-34429
Last modified
CVE-2025-34429 is a high-severity vulnerability rated 7.1/10 on the CVSS scale. 1Panel versions 1.10.33 - 2.0.15 contain a cross-site request forgery (CSRF) vulnerability in the web port configuration functionality. The port-change endpoint lacks CSRF defenses such as anti-CSRF tokens or Origin/Referer validation. EPSS estimates a 0.15% chance of exploitation in the next 30 days.
Description
1Panel versions 1.10.33 - 2.0.15 contain a cross-site request forgery (CSRF) vulnerability in the web port configuration functionality. The port-change endpoint lacks CSRF defenses such as anti-CSRF tokens or Origin/Referer validation. An attacker can craft a malicious webpage that submits a port-change request; when a victim visits it while authenticated, the browser includes valid session cookies and the request succeeds. This allows an attacker to change the port on which the 1Panel web service listens, causing loss of access on the original port and resulting in service disruption or denial of service, and may unintentionally expose the service on an attacker-chosen port.
Metrics
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:H
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:A/VC:N/VI:L/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Fit2cloud | 1panel | >= 1.10.33-lts, <= 2.0.15 |
References
- https://1panel.pro/Product
- https://github.com/1Panel-dev/1Panel/releasesProduct, Release Notes
- https://www.vulncheck.com/advisories/1panel-csrf-web-port-configuration-changeThird Party Advisory
Timeline
- Published
- Last Modified
- Status
- Analyzed
Frequently Asked Questions
What is CVE-2025-34429?
How severe is CVE-2025-34429?
How do I fix CVE-2025-34429?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2025
- CVE-2025-34423MailEnable versions prior to 10.54 contain an unsafe DLL loa…7.8
- CVE-2025-34424MailEnable versions prior to 10.54 contain an unsafe DLL loa…7.8
- CVE-2025-34425MailEnable versions prior to 10.54 contain a reflected cross…6.1
- CVE-2025-34426Rejected reason: This CVE ID was rejected because it was res…
- CVE-2025-34427MailEnable versions prior to 10.54 contain a cleartext stora…7.8
- CVE-2025-34428MailEnable versions prior to 10.54 contain a cleartext stora…7.8
- CVE-2025-344301Panel versions 1.10.33 through 2.0.15 contain a cross-site …4.3
- CVE-2025-34431Rejected reason: This CVE ID was rejected because it was res…
- CVE-2025-34432Rejected reason: This CVE ID was rejected because it was res…
- CVE-2025-34433AVideo versions 14.3.1 prior to 20.1 contain an unauthentica…9.3
- CVE-2025-34434AVideo versions prior to 20.1 with the ImageGallery plugin e…9.1
- CVE-2025-34435AVideo versions prior to 20.1 are vulnerable to an insecure …6.5
Are you affected by CVE-2025-34429?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
