Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 5

Количество 5

ubuntu логотип

CVE-2025-9572

4 месяца назад

n authorization flaw in Foreman's GraphQL API allows low-privileged users to access metadata beyond their assigned permissions. Unlike the REST API, which correctly enforces access controls, the GraphQL endpoint does not apply proper filtering, leading to an authorization bypass.

CVSS3: 5
EPSS: Низкий
redhat логотип

CVE-2025-9572

10 месяцев назад

n authorization flaw in Foreman's GraphQL API allows low-privileged users to access metadata beyond their assigned permissions. Unlike the REST API, which correctly enforces access controls, the GraphQL endpoint does not apply proper filtering, leading to an authorization bypass.

CVSS3: 5
EPSS: Низкий
nvd логотип

CVE-2025-9572

4 месяца назад

n authorization flaw in Foreman's GraphQL API allows low-privileged users to access metadata beyond their assigned permissions. Unlike the REST API, which correctly enforces access controls, the GraphQL endpoint does not apply proper filtering, leading to an authorization bypass.

CVSS3: 5
EPSS: Низкий
debian логотип

CVE-2025-9572

4 месяца назад

n authorization flaw in Foreman's GraphQL API allows low-privileged us ...

CVSS3: 5
EPSS: Низкий
github логотип

GHSA-gvvp-xfg4-2fr6

4 месяца назад

n authorization flaw in Foreman's GraphQL API allows low-privileged users to access metadata beyond their assigned permissions. Unlike the REST API, which correctly enforces access controls, the GraphQL endpoint does not apply proper filtering, leading to an authorization bypass.

CVSS3: 5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2025-9572

n authorization flaw in Foreman's GraphQL API allows low-privileged users to access metadata beyond their assigned permissions. Unlike the REST API, which correctly enforces access controls, the GraphQL endpoint does not apply proper filtering, leading to an authorization bypass.

CVSS3: 5
0%
Низкий
4 месяца назад
redhat логотип
CVE-2025-9572

n authorization flaw in Foreman's GraphQL API allows low-privileged users to access metadata beyond their assigned permissions. Unlike the REST API, which correctly enforces access controls, the GraphQL endpoint does not apply proper filtering, leading to an authorization bypass.

CVSS3: 5
0%
Низкий
10 месяцев назад
nvd логотип
CVE-2025-9572

n authorization flaw in Foreman's GraphQL API allows low-privileged users to access metadata beyond their assigned permissions. Unlike the REST API, which correctly enforces access controls, the GraphQL endpoint does not apply proper filtering, leading to an authorization bypass.

CVSS3: 5
0%
Низкий
4 месяца назад
debian логотип
CVE-2025-9572

n authorization flaw in Foreman's GraphQL API allows low-privileged us ...

CVSS3: 5
0%
Низкий
4 месяца назад
github логотип
GHSA-gvvp-xfg4-2fr6

n authorization flaw in Foreman's GraphQL API allows low-privileged users to access metadata beyond their assigned permissions. Unlike the REST API, which correctly enforces access controls, the GraphQL endpoint does not apply proper filtering, leading to an authorization bypass.

CVSS3: 5
0%
Низкий
4 месяца назад

Уязвимостей на страницу