CVE-2025-14591

Severity CVSS v4.0:
MEDIUM
Type:
CWE-200 Information Leak / Disclosure
Publication date:
20/12/2025
Last modified:
05/01/2026

Description

In Delphix Continuous Compliance version 2025.3.0 and later, following a recent bug fix to correctly handle CR+LF (Windows and DOS) End-of-Record (EOR) characters in delimited files, an issue was identified: using an incorrect EOR configuration can cause inaccurate parsing and leave personally identifiable information (PII) unmasked.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:perforce:delphix_continuous_compliance:*:*:*:*:*:*:*:* 2025.3.0.0 (including) 2025.6.0.0 (including)