All communication with the REST API is unencrypted (HTTP), allowing an attacker to intercept traffic between an actor and the webserver. This leads to the possibility of information gathering and downloading media files.
References
Configurations
No configuration.
History
No history.
Information
Published : 2025-06-12 14:15
Updated : 2025-06-12 16:06
NVD link : CVE-2025-49183
Mitre link : CVE-2025-49183
CVE.ORG link : CVE-2025-49183
JSON object : View
Products Affected
No product.
CWE
CWE-319
Cleartext Transmission of Sensitive Information
