CVE-2025-59686

Severity CVSS v4.0:
Pending analysis
Type:
CWE-285 Improper Authorization
Publication date:
01/10/2025
Last modified:
28/10/2025

Description

Kazaar 1.25.12 allows /api/v1/org-id/orders/order-id/documents calls with a modified order-id.