Логотип exploitDog
bind:CVE-2025-9572
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2025-9572

Количество 5

Количество 5

ubuntu логотип

CVE-2025-9572

около 1 месяца назад

n authorization flaw in Foreman's GraphQL API allows low-privileged users to access metadata beyond their assigned permissions. Unlike the REST API, which correctly enforces access controls, the GraphQL endpoint does not apply proper filtering, leading to an authorization bypass.

CVSS3: 5
EPSS: Низкий
redhat логотип

CVE-2025-9572

7 месяцев назад

n authorization flaw in Foreman's GraphQL API allows low-privileged users to access metadata beyond their assigned permissions. Unlike the REST API, which correctly enforces access controls, the GraphQL endpoint does not apply proper filtering, leading to an authorization bypass.

CVSS3: 5
EPSS: Низкий
nvd логотип

CVE-2025-9572

около 1 месяца назад

n authorization flaw in Foreman's GraphQL API allows low-privileged users to access metadata beyond their assigned permissions. Unlike the REST API, which correctly enforces access controls, the GraphQL endpoint does not apply proper filtering, leading to an authorization bypass.

CVSS3: 5
EPSS: Низкий
debian логотип

CVE-2025-9572

около 1 месяца назад

n authorization flaw in Foreman's GraphQL API allows low-privileged us ...

CVSS3: 5
EPSS: Низкий
github логотип

GHSA-gvvp-xfg4-2fr6

около 1 месяца назад

n authorization flaw in Foreman's GraphQL API allows low-privileged users to access metadata beyond their assigned permissions. Unlike the REST API, which correctly enforces access controls, the GraphQL endpoint does not apply proper filtering, leading to an authorization bypass.

CVSS3: 5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2025-9572

n authorization flaw in Foreman's GraphQL API allows low-privileged users to access metadata beyond their assigned permissions. Unlike the REST API, which correctly enforces access controls, the GraphQL endpoint does not apply proper filtering, leading to an authorization bypass.

CVSS3: 5
0%
Низкий
около 1 месяца назад
redhat логотип
CVE-2025-9572

n authorization flaw in Foreman's GraphQL API allows low-privileged users to access metadata beyond their assigned permissions. Unlike the REST API, which correctly enforces access controls, the GraphQL endpoint does not apply proper filtering, leading to an authorization bypass.

CVSS3: 5
0%
Низкий
7 месяцев назад
nvd логотип
CVE-2025-9572

n authorization flaw in Foreman's GraphQL API allows low-privileged users to access metadata beyond their assigned permissions. Unlike the REST API, which correctly enforces access controls, the GraphQL endpoint does not apply proper filtering, leading to an authorization bypass.

CVSS3: 5
0%
Низкий
около 1 месяца назад
debian логотип
CVE-2025-9572

n authorization flaw in Foreman's GraphQL API allows low-privileged us ...

CVSS3: 5
0%
Низкий
около 1 месяца назад
github логотип
GHSA-gvvp-xfg4-2fr6

n authorization flaw in Foreman's GraphQL API allows low-privileged users to access metadata beyond their assigned permissions. Unlike the REST API, which correctly enforces access controls, the GraphQL endpoint does not apply proper filtering, leading to an authorization bypass.

CVSS3: 5
0%
Низкий
около 1 месяца назад

Уязвимостей на страницу