CVE-2025-24487
Severity CVSS v4.0:
MEDIUM
Type:
Unavailable / Other
Publication date:
15/04/2025
Last modified:
16/04/2025
Description
An unauthenticated attacker can infer the existence of usernames in the system by querying an API.
Impact
Base Score 4.0
6.90
Severity 4.0
MEDIUM
Base Score 3.x
5.30
Severity 3.x
MEDIUM