CVE-2025-41716
Severity CVSS v4.0:
Pending analysis
Type:
CWE-306
Missing Authentication for Critical Function
Publication date:
24/09/2025
Last modified:
24/09/2025
Description
The web application allows an unauthenticated remote attacker to learn information about existing user accounts with their corresponding role due to missing authentication for critical function.
Impact
Base Score 3.x
5.30
Severity 3.x
MEDIUM



