Qrmenumpro develops a menu panel product that handles user-facing session and authorization logic, where observed vulnerabilities center on improper session management and authorization bypass conditions rooted in inadequate validation of user-controlled tokens and session identifiers. Live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Qrmenumpro over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2025-7013CRITICAL Authorization Bypass Through User-Controlled Key vulnerability in QR Menu Pro Smart Menu Systems Menu Panel allows Exploitation of Trusted Identifiers.
This issue affects Menu Pan | Jan 29, 2026 | 9.8 | 30 | NO | NO |
CVE-2025-7014HIGH Session Fixation vulnerability in QR Menu Pro Smart Menu Systems Menu Panel allows Session Hijacking.
This issue affects Menu Panel: through 29012026.
NOTE: The vendor was conta | Jan 29, 2026 | 8.8 | 25 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Qrmenumpro.
Media articles that mention a CVE ID that affects a product developed by Qrmenumpro — matched by CVE ID, not by vendor name.