CVE-2025-68663

Severity CVSS v4.0:
MEDIUM
Type:
CWE-287 Authentication Issues
Publication date:
11/02/2026
Last modified:
12/02/2026

Description

Outline is a service that allows for collaborative documentation. Prior to 1.1.0, a vulnerability was found in Outline's WebSocket authentication mechanism that allows suspended users to maintain or establish real-time WebSocket connections and continue receiving sensitive operational updates after their account has been suspended. This vulnerability is fixed in 1.1.0.