Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2025-12397

Опубликовано: 10 нояб. 2025
Источник: nvd
EPSS Низкий

Описание

A SQL injection vulnerability was found in Looker Studio.

A Looker Studio user with report view access could inject malicious SQL that would execute with the report owner's permissions. The vulnerability affected to reports with BigQuery as the data source.

This vulnerability was patched on 21 July 2025, and no customer action is needed.

EPSS

Процентиль: 11%
0.00037
Низкий

Дефекты

CWE-89

Связанные уязвимости

github
3 месяца назад

A SQL injection vulnerability was found in Looker Studio. A Looker Studio user with report view access could inject malicious SQL that would execute with the report owner's permissions. The vulnerability affected to reports with BigQuery as the data source. This vulnerability was patched on 21 July 2025, and no customer action is needed.

EPSS

Процентиль: 11%
0.00037
Низкий

Дефекты

CWE-89