{
    "document": {
        "category": "csaf_base",
        "csaf_version": "2.0",
        "distribution": {
            "tlp": {
                "label": "WHITE"
            }
        },
        "lang": "en",
        "notes": [
            {
                "category": "legal_disclaimer",
                "text": "The Netherlands Cyber Security Center (henceforth: NCSC-NL) maintains this portal to enhance access to its information and vulnerabilities. The use of this information is subject to the following terms and conditions:\n\nThe vulnerabilities disclosed in this portal are gathered by NCSC-NL from a variety of open sources, which the user can retrieve from other platforms. NCSC-NL makes every reasonable effort to ensure that the content of this portal is kept up to date, and that it is accurate and complete. Nevertheless, NCSC-NL cannot entirely rule out the possibility of errors, and therefore cannot give any warranty in respect of its completeness, accuracy or real-time keeping up-to-date. NCSC-NL does not control nor guarantee the accuracy, relevance, timeliness or completeness of information obtained from these external sources. The vulnerabilities disclosed in this portal are intended solely for the convenience of professional parties to take appropriate measures to manage the risks posed to the cybersecurity. No rights can be derived from the information provided therein.\n\nNCSC-NL and the Kingdom of the Netherlands assume no legal liability or responsibility for any damage resulting from either the use or inability of use of the vulnerabilities disclosed in this portal. This includes damage resulting from the inaccuracy of incompleteness of the information contained in it.\nThe information on this page is subject to Dutch law. All disputes related to or arising from the use of this portal regarding the disclosure of vulnerabilities will be submitted to the competent court in The Hague. This choice of means also applies to the court in summary proceedings."
            }
        ],
        "publisher": {
            "category": "coordinator",
            "contact_details": "cert@ncsc.nl",
            "name": "National Cyber Security Centre",
            "namespace": "https://www.ncsc.nl/"
        },
        "title": "CVE-2025-70058",
        "tracking": {
            "current_release_date": "2026-03-25T18:48:49.862300Z",
            "generator": {
                "date": "2026-02-17T15:00:00Z",
                "engine": {
                    "name": "V.E.L.M.A",
                    "version": "1.7"
                }
            },
            "id": "CVE-2025-70058",
            "initial_release_date": "2026-02-23T16:39:38.198370Z",
            "revision_history": [
                {
                    "date": "2026-02-23T16:39:38.198370Z",
                    "number": "1",
                    "summary": "CVE created.| Source created.| CVE status created. (valid)| Description created for source.| References created (3)."
                },
                {
                    "date": "2026-02-23T16:39:47.185780Z",
                    "number": "2",
                    "summary": "NCSC Score created."
                },
                {
                    "date": "2026-02-23T17:27:24.985684Z",
                    "number": "3",
                    "summary": "Source created.| CVE status created. (valid)| Description created for source.| References created (3)."
                },
                {
                    "date": "2026-02-24T14:14:32.352753Z",
                    "number": "4",
                    "summary": "Source created.| CVE status created. (valid)| EPSS created."
                },
                {
                    "date": "2026-02-25T14:40:17.527191Z",
                    "number": "5",
                    "summary": "CVSS created.| CWES updated (1).| Unknown change."
                },
                {
                    "date": "2026-02-25T14:40:18.860719Z",
                    "number": "6",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-02-25T15:27:47.438969Z",
                    "number": "7",
                    "summary": "CVSS created.| CWES updated (1)."
                },
                {
                    "date": "2026-02-25T15:27:52.144580Z",
                    "number": "8",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-02-25T23:39:46.192322Z",
                    "number": "9",
                    "summary": "Source created.| CVE status created. (valid)| Description created for source.| CVSS created.| References created (6).| CWES updated (1)."
                },
                {
                    "date": "2026-02-25T23:39:52.624321Z",
                    "number": "10",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-02-26T00:23:29.550156Z",
                    "number": "11",
                    "summary": "Source created.| CVE status created. (valid)| Description created for source.| CVSS created.| Products created (1).| References created (4).| CWES updated (1)."
                },
                {
                    "date": "2026-02-26T00:23:31.400986Z",
                    "number": "12",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-02-26T20:26:26.268389Z",
                    "number": "13",
                    "summary": "Products created (1).| Product Identifiers created (1)."
                },
                {
                    "date": "2026-02-26T20:26:28.725921Z",
                    "number": "14",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-02-28T13:55:19.471615Z",
                    "number": "15",
                    "summary": "Source created.| CVE status created. (valid)| Description created for source.| CVSS created.| Products created (9).| Products connected (67).| References created (2)."
                },
                {
                    "date": "2026-03-19T20:11:23.853688Z",
                    "number": "16",
                    "summary": "Source connected.| CVE status created. (valid)| EPSS created."
                },
                {
                    "date": "2026-03-19T20:11:27.507382Z",
                    "number": "17",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-03-25T18:47:52.105997Z",
                    "number": "18",
                    "summary": "Source created.| CVE status created. (valid)| Description created for source.| CVSS created.| Products created (1).| References created (6).| CWES updated (1)."
                }
            ],
            "status": "interim",
            "version": "18"
        }
    },
    "product_tree": {
        "branches": [
            {
                "branches": [
                    {
                        "branches": [
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/1.12.0",
                                "product": {
                                    "name": "vers:unknown/1.12.0",
                                    "product_id": "CSAFPID-5732264",
                                    "product_identification_helper": {
                                        "cpe": "cpe:2.3:a:ymfe:yapi:1.12.0:*:*:*:*:*:*:*"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/1.9.3",
                                "product": {
                                    "name": "vers:unknown/1.9.3",
                                    "product_id": "CSAFPID-5749383"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.1.0",
                                "product": {
                                    "name": "vers:unknown/v1.1.0",
                                    "product_id": "CSAFPID-3284942"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.1.1",
                                "product": {
                                    "name": "vers:unknown/v1.1.1",
                                    "product_id": "CSAFPID-3284943"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.1.2",
                                "product": {
                                    "name": "vers:unknown/v1.1.2",
                                    "product_id": "CSAFPID-3284944"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.10.0",
                                "product": {
                                    "name": "vers:unknown/v1.10.0",
                                    "product_id": "CSAFPID-5749384"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.10.1",
                                "product": {
                                    "name": "vers:unknown/v1.10.1",
                                    "product_id": "CSAFPID-5749385"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.10.2",
                                "product": {
                                    "name": "vers:unknown/v1.10.2",
                                    "product_id": "CSAFPID-5749386"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.11.0",
                                "product": {
                                    "name": "vers:unknown/v1.11.0",
                                    "product_id": "CSAFPID-5749387"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.12.0",
                                "product": {
                                    "name": "vers:unknown/v1.12.0",
                                    "product_id": "CSAFPID-5749388"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.2.0",
                                "product": {
                                    "name": "vers:unknown/v1.2.0",
                                    "product_id": "CSAFPID-3284945"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.2.3",
                                "product": {
                                    "name": "vers:unknown/v1.2.3",
                                    "product_id": "CSAFPID-3284946"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.2.4",
                                "product": {
                                    "name": "vers:unknown/v1.2.4",
                                    "product_id": "CSAFPID-3284947"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.2.5",
                                "product": {
                                    "name": "vers:unknown/v1.2.5",
                                    "product_id": "CSAFPID-3284948"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.2.6",
                                "product": {
                                    "name": "vers:unknown/v1.2.6",
                                    "product_id": "CSAFPID-3284949"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.2.7",
                                "product": {
                                    "name": "vers:unknown/v1.2.7",
                                    "product_id": "CSAFPID-3284950"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.2.8",
                                "product": {
                                    "name": "vers:unknown/v1.2.8",
                                    "product_id": "CSAFPID-3284951"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.2.9",
                                "product": {
                                    "name": "vers:unknown/v1.2.9",
                                    "product_id": "CSAFPID-3284952"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.3.0",
                                "product": {
                                    "name": "vers:unknown/v1.3.0",
                                    "product_id": "CSAFPID-3284953"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.3.1",
                                "product": {
                                    "name": "vers:unknown/v1.3.1",
                                    "product_id": "CSAFPID-3284954"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.3.10",
                                "product": {
                                    "name": "vers:unknown/v1.3.10",
                                    "product_id": "CSAFPID-3284955"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.3.11",
                                "product": {
                                    "name": "vers:unknown/v1.3.11",
                                    "product_id": "CSAFPID-3284956"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.3.12",
                                "product": {
                                    "name": "vers:unknown/v1.3.12",
                                    "product_id": "CSAFPID-3284957"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.3.13",
                                "product": {
                                    "name": "vers:unknown/v1.3.13",
                                    "product_id": "CSAFPID-3284958"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.3.14",
                                "product": {
                                    "name": "vers:unknown/v1.3.14",
                                    "product_id": "CSAFPID-3284959"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.3.15",
                                "product": {
                                    "name": "vers:unknown/v1.3.15",
                                    "product_id": "CSAFPID-3284960"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.3.16",
                                "product": {
                                    "name": "vers:unknown/v1.3.16",
                                    "product_id": "CSAFPID-3284961"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.3.17",
                                "product": {
                                    "name": "vers:unknown/v1.3.17",
                                    "product_id": "CSAFPID-3284962"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.3.18",
                                "product": {
                                    "name": "vers:unknown/v1.3.18",
                                    "product_id": "CSAFPID-3284963"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.3.19",
                                "product": {
                                    "name": "vers:unknown/v1.3.19",
                                    "product_id": "CSAFPID-3284964"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.3.2",
                                "product": {
                                    "name": "vers:unknown/v1.3.2",
                                    "product_id": "CSAFPID-3284965"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.3.20",
                                "product": {
                                    "name": "vers:unknown/v1.3.20",
                                    "product_id": "CSAFPID-3284966"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.3.21",
                                "product": {
                                    "name": "vers:unknown/v1.3.21",
                                    "product_id": "CSAFPID-3284967"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.3.22",
                                "product": {
                                    "name": "vers:unknown/v1.3.22",
                                    "product_id": "CSAFPID-3284968"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.3.23",
                                "product": {
                                    "name": "vers:unknown/v1.3.23",
                                    "product_id": "CSAFPID-4340270"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.3.3",
                                "product": {
                                    "name": "vers:unknown/v1.3.3",
                                    "product_id": "CSAFPID-3284969"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.3.4",
                                "product": {
                                    "name": "vers:unknown/v1.3.4",
                                    "product_id": "CSAFPID-3284970"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.3.5",
                                "product": {
                                    "name": "vers:unknown/v1.3.5",
                                    "product_id": "CSAFPID-3284971"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.3.6",
                                "product": {
                                    "name": "vers:unknown/v1.3.6",
                                    "product_id": "CSAFPID-3284972"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.3.7",
                                "product": {
                                    "name": "vers:unknown/v1.3.7",
                                    "product_id": "CSAFPID-3284973"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.3.8",
                                "product": {
                                    "name": "vers:unknown/v1.3.8",
                                    "product_id": "CSAFPID-3284974"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.3.9",
                                "product": {
                                    "name": "vers:unknown/v1.3.9",
                                    "product_id": "CSAFPID-3284975"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.4.1",
                                "product": {
                                    "name": "vers:unknown/v1.4.1",
                                    "product_id": "CSAFPID-4340271"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.4.3",
                                "product": {
                                    "name": "vers:unknown/v1.4.3",
                                    "product_id": "CSAFPID-4340272"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.4.4",
                                "product": {
                                    "name": "vers:unknown/v1.4.4",
                                    "product_id": "CSAFPID-4340273"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.5.0",
                                "product": {
                                    "name": "vers:unknown/v1.5.0",
                                    "product_id": "CSAFPID-4340274"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.5.1",
                                "product": {
                                    "name": "vers:unknown/v1.5.1",
                                    "product_id": "CSAFPID-4340275"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.5.10",
                                "product": {
                                    "name": "vers:unknown/v1.5.10",
                                    "product_id": "CSAFPID-4340276"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.5.11",
                                "product": {
                                    "name": "vers:unknown/v1.5.11",
                                    "product_id": "CSAFPID-4340277"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.5.12",
                                "product": {
                                    "name": "vers:unknown/v1.5.12",
                                    "product_id": "CSAFPID-4340278"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.5.13",
                                "product": {
                                    "name": "vers:unknown/v1.5.13",
                                    "product_id": "CSAFPID-4340279"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.5.14",
                                "product": {
                                    "name": "vers:unknown/v1.5.14",
                                    "product_id": "CSAFPID-4340280"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.5.2",
                                "product": {
                                    "name": "vers:unknown/v1.5.2",
                                    "product_id": "CSAFPID-4340281"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.5.3",
                                "product": {
                                    "name": "vers:unknown/v1.5.3",
                                    "product_id": "CSAFPID-4340282"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.5.4",
                                "product": {
                                    "name": "vers:unknown/v1.5.4",
                                    "product_id": "CSAFPID-4340283"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.5.5",
                                "product": {
                                    "name": "vers:unknown/v1.5.5",
                                    "product_id": "CSAFPID-4340284"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.5.6",
                                "product": {
                                    "name": "vers:unknown/v1.5.6",
                                    "product_id": "CSAFPID-4340285"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.5.7",
                                "product": {
                                    "name": "vers:unknown/v1.5.7",
                                    "product_id": "CSAFPID-4340286"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.7.0",
                                "product": {
                                    "name": "vers:unknown/v1.7.0",
                                    "product_id": "CSAFPID-4340287"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.7.0-beta.0",
                                "product": {
                                    "name": "vers:unknown/v1.7.0-beta.0",
                                    "product_id": "CSAFPID-4340288"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.7.0-beta.1",
                                "product": {
                                    "name": "vers:unknown/v1.7.0-beta.1",
                                    "product_id": "CSAFPID-4340289"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.7.1",
                                "product": {
                                    "name": "vers:unknown/v1.7.1",
                                    "product_id": "CSAFPID-4340290"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.7.2",
                                "product": {
                                    "name": "vers:unknown/v1.7.2",
                                    "product_id": "CSAFPID-4340291"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.8.0",
                                "product": {
                                    "name": "vers:unknown/v1.8.0",
                                    "product_id": "CSAFPID-4340292"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.8.1",
                                "product": {
                                    "name": "vers:unknown/v1.8.1",
                                    "product_id": "CSAFPID-4340293"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.8.2",
                                "product": {
                                    "name": "vers:unknown/v1.8.2",
                                    "product_id": "CSAFPID-4340294"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.8.3",
                                "product": {
                                    "name": "vers:unknown/v1.8.3",
                                    "product_id": "CSAFPID-4340295"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.8.4",
                                "product": {
                                    "name": "vers:unknown/v1.8.4",
                                    "product_id": "CSAFPID-4340296"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.8.5",
                                "product": {
                                    "name": "vers:unknown/v1.8.5",
                                    "product_id": "CSAFPID-4340297"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.8.7",
                                "product": {
                                    "name": "vers:unknown/v1.8.7",
                                    "product_id": "CSAFPID-4340298"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.8.8",
                                "product": {
                                    "name": "vers:unknown/v1.8.8",
                                    "product_id": "CSAFPID-4340299"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.8.9",
                                "product": {
                                    "name": "vers:unknown/v1.8.9",
                                    "product_id": "CSAFPID-4340300"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.9.0",
                                "product": {
                                    "name": "vers:unknown/v1.9.0",
                                    "product_id": "CSAFPID-4340301"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.9.1",
                                "product": {
                                    "name": "vers:unknown/v1.9.1",
                                    "product_id": "CSAFPID-4340302"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.9.3",
                                "product": {
                                    "name": "vers:unknown/v1.9.3",
                                    "product_id": "CSAFPID-5749389"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.9.4",
                                "product": {
                                    "name": "vers:unknown/v1.9.4",
                                    "product_id": "CSAFPID-5749390"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.9.5",
                                "product": {
                                    "name": "vers:unknown/v1.9.5",
                                    "product_id": "CSAFPID-5749391"
                                }
                            }
                        ],
                        "category": "product_name",
                        "name": "YApi"
                    },
                    {
                        "branches": [
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/<=1.12.0",
                                "product": {
                                    "name": "vers:unknown/<=1.12.0",
                                    "product_id": "CSAFPID-5908742"
                                }
                            }
                        ],
                        "category": "product_name",
                        "name": "npm/yapi-vendor"
                    },
                    {
                        "branches": [
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/>=0|<=1.12.0",
                                "product": {
                                    "name": "vers:unknown/>=0|<=1.12.0",
                                    "product_id": "CSAFPID-5721015"
                                }
                            }
                        ],
                        "category": "product_name",
                        "name": "yapi-vendor"
                    }
                ],
                "category": "vendor",
                "name": "YMFE"
            }
        ]
    },
    "vulnerabilities": [
        {
            "cve": "CVE-2025-70058",
            "cwe": {
                "id": "CWE-295",
                "name": "Improper Certificate Validation"
            },
            "notes": [
                {
                    "category": "description",
                    "text": "An issue pertaining to CWE-295: Improper Certificate Validation was discovered in YMFE yapi v1.12.0. The application disables TLS/SSL certificate validation by setting 'rejectUnauthorized': false in the HTTPS agent configuration for Axios requests",
                    "title": "nvd - https://nvd.nist.gov/vuln/detail/CVE-2025-70058"
                },
                {
                    "category": "description",
                    "text": "An issue pertaining to CWE-295: Improper Certificate Validation was discovered in YMFE yapi v1.12.0. The application disables TLS/SSL certificate validation by setting 'rejectUnauthorized': false in the HTTPS agent configuration for Axios requests",
                    "title": "cveprojectv5 - https://www.cve.org/CVERecord?id=CVE-2025-70058"
                },
                {
                    "category": "description",
                    "text": "An issue pertaining to CWE-295: Improper Certificate Validation was discovered in YMFE yapi v1.12.0. The application disables TLS/SSL certificate validation by setting 'rejectUnauthorized': false in the HTTPS agent configuration for Axios requests",
                    "title": "github - https://github.com/advisories/GHSA-663h-2vr3-ghrj"
                },
                {
                    "category": "description",
                    "text": "An issue pertaining to CWE-295: Improper Certificate Validation was discovered in YMFE yapi v1.12.0. The application disables TLS/SSL certificate validation by setting 'rejectUnauthorized': false in the HTTPS agent configuration for Axios requests",
                    "title": "osv - https://www.googleapis.com/download/storage/v1/b/osv-vulnerabilities/o/npm%2FGHSA-663h-2vr3-ghrj.json?alt=media"
                },
                {
                    "category": "description",
                    "text": "An issue pertaining to CWE-295: Improper Certificate Validation was discovered in YMFE yapi v1.12.0. The application disables TLS/SSL certificate validation by setting 'rejectUnauthorized': false in the HTTPS agent configuration for Axios requests",
                    "title": "osv - https://www.googleapis.com/download/storage/v1/b/osv-vulnerabilities/o/GIT%2FCVE-2025-70058.json?alt=media"
                },
                {
                    "category": "description",
                    "text": "An issue pertaining to CWE-295: Improper Certificate Validation was discovered in YMFE yapi v1.12.0. The application disables TLS/SSL certificate validation by setting 'rejectUnauthorized': false in the HTTPS agent configuration for Axios requests",
                    "title": "gitlab - https://gitlab.com/api/v4/projects/25847700/repository/files/npm%2Fyapi-vendor%2FCVE-2025-70058.yml/raw"
                },
                {
                    "category": "other",
                    "text": "0.00022",
                    "title": "EPSS"
                },
                {
                    "category": "other",
                    "text": "4.0",
                    "title": "NCSC Score"
                },
                {
                    "category": "other",
                    "text": "There is product data available from source Nvd",
                    "title": "NCSC Score top increasing factors"
                },
                {
                    "category": "other",
                    "text": "The value of the most recent EPSS score",
                    "title": "NCSC Score top decreasing factors"
                }
            ],
            "product_status": {
                "known_affected": [
                    "CSAFPID-5721015",
                    "CSAFPID-5732264",
                    "CSAFPID-3284942",
                    "CSAFPID-3284943",
                    "CSAFPID-3284944",
                    "CSAFPID-3284945",
                    "CSAFPID-3284946",
                    "CSAFPID-3284947",
                    "CSAFPID-3284948",
                    "CSAFPID-3284949",
                    "CSAFPID-3284950",
                    "CSAFPID-3284951",
                    "CSAFPID-3284952",
                    "CSAFPID-3284953",
                    "CSAFPID-3284954",
                    "CSAFPID-3284955",
                    "CSAFPID-3284956",
                    "CSAFPID-3284957",
                    "CSAFPID-3284958",
                    "CSAFPID-3284959",
                    "CSAFPID-3284960",
                    "CSAFPID-3284961",
                    "CSAFPID-3284962",
                    "CSAFPID-3284963",
                    "CSAFPID-3284964",
                    "CSAFPID-3284965",
                    "CSAFPID-3284966",
                    "CSAFPID-3284967",
                    "CSAFPID-3284968",
                    "CSAFPID-3284969",
                    "CSAFPID-3284970",
                    "CSAFPID-3284971",
                    "CSAFPID-3284972",
                    "CSAFPID-3284973",
                    "CSAFPID-3284974",
                    "CSAFPID-3284975",
                    "CSAFPID-4340270",
                    "CSAFPID-4340271",
                    "CSAFPID-4340272",
                    "CSAFPID-4340273",
                    "CSAFPID-4340274",
                    "CSAFPID-4340275",
                    "CSAFPID-4340276",
                    "CSAFPID-4340277",
                    "CSAFPID-4340278",
                    "CSAFPID-4340279",
                    "CSAFPID-4340280",
                    "CSAFPID-4340281",
                    "CSAFPID-4340282",
                    "CSAFPID-4340283",
                    "CSAFPID-4340284",
                    "CSAFPID-4340285",
                    "CSAFPID-4340286",
                    "CSAFPID-4340287",
                    "CSAFPID-4340288",
                    "CSAFPID-4340289",
                    "CSAFPID-4340290",
                    "CSAFPID-4340291",
                    "CSAFPID-4340292",
                    "CSAFPID-4340293",
                    "CSAFPID-4340294",
                    "CSAFPID-4340295",
                    "CSAFPID-4340296",
                    "CSAFPID-4340297",
                    "CSAFPID-4340298",
                    "CSAFPID-4340299",
                    "CSAFPID-4340300",
                    "CSAFPID-4340301",
                    "CSAFPID-4340302",
                    "CSAFPID-5749383",
                    "CSAFPID-5749384",
                    "CSAFPID-5749385",
                    "CSAFPID-5749386",
                    "CSAFPID-5749387",
                    "CSAFPID-5749388",
                    "CSAFPID-5749389",
                    "CSAFPID-5749390",
                    "CSAFPID-5749391",
                    "CSAFPID-5908742"
                ]
            },
            "references": [
                {
                    "category": "external",
                    "summary": "Source - cveprojectv5",
                    "url": "https://www.cve.org/CVERecord?id=CVE-2025-70058"
                },
                {
                    "category": "external",
                    "summary": "Source raw - cveprojectv5",
                    "url": "https://raw.githubusercontent.com/CVEProject/cvelistV5/main/cves/2025/70xxx/CVE-2025-70058.json"
                },
                {
                    "category": "external",
                    "summary": "Source - nvd",
                    "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-70058"
                },
                {
                    "category": "external",
                    "summary": "Source raw - nvd",
                    "url": "https://services.nvd.nist.gov/rest/json/cves/2.0?cveId=CVE-2025-70058"
                },
                {
                    "category": "external",
                    "summary": "Source - first",
                    "url": "https://api.first.org/data/v1/epss?cve=CVE-2025-70058"
                },
                {
                    "category": "external",
                    "summary": "Source raw - first",
                    "url": "https://api.first.org/data/v1/epss?limit=10000&offset=0"
                },
                {
                    "category": "external",
                    "summary": "Source - github",
                    "url": "https://github.com/advisories/GHSA-663h-2vr3-ghrj"
                },
                {
                    "category": "external",
                    "summary": "Source raw - github",
                    "url": "https://api.github.com/advisories/GHSA-663h-2vr3-ghrj"
                },
                {
                    "category": "external",
                    "summary": "Source - osv",
                    "url": "https://www.googleapis.com/download/storage/v1/b/osv-vulnerabilities/o/npm%2FGHSA-663h-2vr3-ghrj.json?alt=media"
                },
                {
                    "category": "external",
                    "summary": "Source - osv",
                    "url": "https://www.googleapis.com/download/storage/v1/b/osv-vulnerabilities/o/GIT%2FCVE-2025-70058.json?alt=media"
                },
                {
                    "category": "external",
                    "summary": "Source - first",
                    "url": "https://api.first.org/data/v1/epss?limit=10000&offset=10000"
                },
                {
                    "category": "external",
                    "summary": "Source - gitlab",
                    "url": "https://gitlab.com/api/v4/projects/25847700/repository/files/npm%2Fyapi-vendor%2FCVE-2025-70058.yml/raw"
                },
                {
                    "category": "external",
                    "summary": "Reference - cveprojectv5; github; gitlab; nvd; osv",
                    "url": "https://github.com/YMFE"
                },
                {
                    "category": "external",
                    "summary": "Reference - cveprojectv5; github; gitlab; nvd",
                    "url": "https://github.com/YMFE/yapi"
                },
                {
                    "category": "external",
                    "summary": "Reference - cveprojectv5; github; gitlab; nvd; osv",
                    "url": "https://gist.github.com/zcxlighthouse/11c53803faf23f607c2787c166e811d4"
                },
                {
                    "category": "external",
                    "summary": "Reference - github; gitlab; osv",
                    "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-70058"
                },
                {
                    "category": "external",
                    "summary": "Reference - github; gitlab; osv",
                    "url": "https://github.com/YMFE/yapi/blob/59bade3a8a43e7db077d38a4b0c7c584f30ddf8c/common/postmanLib.js#L110"
                },
                {
                    "category": "external",
                    "summary": "Reference - github; gitlab",
                    "url": "https://github.com/advisories/GHSA-663h-2vr3-ghrj"
                }
            ],
            "scores": [
                {
                    "cvss_v3": {
                        "version": "3.1",
                        "vectorString": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N",
                        "baseScore": 7.4,
                        "baseSeverity": "HIGH"
                    },
                    "products": [
                        "CSAFPID-3284942",
                        "CSAFPID-3284943",
                        "CSAFPID-3284944",
                        "CSAFPID-3284945",
                        "CSAFPID-3284946",
                        "CSAFPID-3284947",
                        "CSAFPID-3284948",
                        "CSAFPID-3284949",
                        "CSAFPID-3284950",
                        "CSAFPID-3284951",
                        "CSAFPID-3284952",
                        "CSAFPID-3284953",
                        "CSAFPID-3284954",
                        "CSAFPID-3284955",
                        "CSAFPID-3284956",
                        "CSAFPID-3284957",
                        "CSAFPID-3284958",
                        "CSAFPID-3284959",
                        "CSAFPID-3284960",
                        "CSAFPID-3284961",
                        "CSAFPID-3284962",
                        "CSAFPID-3284963",
                        "CSAFPID-3284964",
                        "CSAFPID-3284965",
                        "CSAFPID-3284966",
                        "CSAFPID-3284967",
                        "CSAFPID-3284968",
                        "CSAFPID-3284969",
                        "CSAFPID-3284970",
                        "CSAFPID-3284971",
                        "CSAFPID-3284972",
                        "CSAFPID-3284973",
                        "CSAFPID-3284974",
                        "CSAFPID-3284975",
                        "CSAFPID-4340270",
                        "CSAFPID-4340271",
                        "CSAFPID-4340272",
                        "CSAFPID-4340273",
                        "CSAFPID-4340274",
                        "CSAFPID-4340275",
                        "CSAFPID-4340276",
                        "CSAFPID-4340277",
                        "CSAFPID-4340278",
                        "CSAFPID-4340279",
                        "CSAFPID-4340280",
                        "CSAFPID-4340281",
                        "CSAFPID-4340282",
                        "CSAFPID-4340283",
                        "CSAFPID-4340284",
                        "CSAFPID-4340285",
                        "CSAFPID-4340286",
                        "CSAFPID-4340287",
                        "CSAFPID-4340288",
                        "CSAFPID-4340289",
                        "CSAFPID-4340290",
                        "CSAFPID-4340291",
                        "CSAFPID-4340292",
                        "CSAFPID-4340293",
                        "CSAFPID-4340294",
                        "CSAFPID-4340295",
                        "CSAFPID-4340296",
                        "CSAFPID-4340297",
                        "CSAFPID-4340298",
                        "CSAFPID-4340299",
                        "CSAFPID-4340300",
                        "CSAFPID-4340301",
                        "CSAFPID-4340302",
                        "CSAFPID-5721015",
                        "CSAFPID-5732264",
                        "CSAFPID-5749383",
                        "CSAFPID-5749384",
                        "CSAFPID-5749385",
                        "CSAFPID-5749386",
                        "CSAFPID-5749387",
                        "CSAFPID-5749388",
                        "CSAFPID-5749389",
                        "CSAFPID-5749390",
                        "CSAFPID-5749391",
                        "CSAFPID-5908742"
                    ]
                }
            ],
            "title": "CVE-2025-70058"
        }
    ]
}