CVE-2025-58137
Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
12/12/2025
Last modified:
12/12/2025
Description
Authorization Bypass Through User-Controlled Key vulnerability in Apache Fineract.<br />
<br />
This issue affects Apache Fineract: through 1.11.0. The issue is fixed in version 1.12.1.<br />
<br />
Users are encouraged to upgrade to version 1.13.0, the latest release.
Impact
Base Score 3.x
8.10
Severity 3.x
HIGH



