CVE-2025-62604
22.10.2025, 15:16
MeterSphere is an open source continuous testing platform. Prior to version 2.10.25-lts, a logic flaw allows retrieval of arbitrary user information. This allows an unauthenticated attacker to log in to the system as any user. This issue has been patched in version 2.10.25-lts.Enginsight
| Vendor | Product | Version |
|---|---|---|
| metersphere | metersphere | 𝑥 < 2.10.25 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration