CVE-2025-60538
Published Jan 9, 2026A lack of rate limiting in the login page of shiori v1.7.4 and below allows attackers to bypass authentication via a brute force attack.
Vendor/product archive
1 CVEs tagged to go-shiori / shiori — 0 Critical, 0 High, 1 Medium, 0 Low, 0 Unrated.
A lack of rate limiting in the login page of shiori v1.7.4 and below allows attackers to bypass authentication via a brute force attack.