CVE-2025-67652
Last modified
CVE-2025-67652 is a medium-severity vulnerability rated 6.1/10 on the CVSS scale. An attacker with access to the project file could use the exposed credentials to impersonate users, escalate privileges, or gain unauthorized access to systems and services. The absence of robust encryption or secure handling mechanisms increases the likelihood of this type of exploitation, leaving sensitive information more vulnerable.. EPSS estimates a 0.10% chance of exploitation in the next 30 days.
Description
An attacker with access to the project file could use the exposed credentials to impersonate users, escalate privileges, or gain unauthorized access to systems and services. The absence of robust encryption or secure handling mechanisms increases the likelihood of this type of exploitation, leaving sensitive information more vulnerable.
Metrics
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:N
Weakness Enumeration
References
Timeline
- Published
- Last Modified
- Status
- Deferred
Frequently Asked Questions
What is CVE-2025-67652?
How severe is CVE-2025-67652?
How do I fix CVE-2025-67652?
Are you affected by CVE-2025-67652?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
