Логотип exploitDog
bind:CVE-2025-0740
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2025-0740

Количество 2

Количество 2

nvd логотип

CVE-2025-0740

около 1 года назад

An Improper Access Control vulnerability has been found in EmbedAI 2.1 and below. This vulnerability allows an authenticated attacker to obtain chat messages belonging to other users by changing the “CHAT_ID” of the endpoint "/embedai/chats/load_messages?chat_id=<CHAT_ID>".

CVSS3: 8.6
EPSS: Низкий
github логотип

GHSA-jx6c-jcmp-rgvp

около 1 года назад

An Improper Access Control vulnerability has been found in EmbedAI 2.1 and below. This vulnerability allows an authenticated attacker to obtain chat messages belonging to other users by changing the “CHAT_ID” of the endpoint "/embedai/chats/load_messages?chat_id=<CHAT_ID>".

CVSS3: 8.6
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2025-0740

An Improper Access Control vulnerability has been found in EmbedAI 2.1 and below. This vulnerability allows an authenticated attacker to obtain chat messages belonging to other users by changing the “CHAT_ID” of the endpoint "/embedai/chats/load_messages?chat_id=<CHAT_ID>".

CVSS3: 8.6
0%
Низкий
около 1 года назад
github логотип
GHSA-jx6c-jcmp-rgvp

An Improper Access Control vulnerability has been found in EmbedAI 2.1 and below. This vulnerability allows an authenticated attacker to obtain chat messages belonging to other users by changing the “CHAT_ID” of the endpoint "/embedai/chats/load_messages?chat_id=<CHAT_ID>".

CVSS3: 8.6
0%
Низкий
около 1 года назад

Уязвимостей на страницу