CVE-2025-13292

Severity CVSS v4.0:
HIGH
Type:
CWE-269 Improper Privilege Management
Publication date:
06/12/2025
Last modified:
06/12/2025

Description

A vulnerability in Apigee-X allowed an attacker to gain unauthorized read and write access to Apigee Analytics (AX) data and access logs belonging to other Apigee customer organizations.<br /> <br /> Apigee-X was found to be vulnerable.<br /> <br /> This vulnerability was patched in version 1-16-0-apigee-3. No user action is required for this.