A vulnerability was found in QloApps up to 1.7.0. It has been declared as critical. The affected element is an unknown function of the component Hotel Review Feature. Executing a manipulation can lead to unrestricted upload.

This vulnerability is tracked as CVE-2025-67325. The attack can be launched remotely. No exploit exists.