CVE-2025-62645
EUVD-2025-3492817.10.2025, 21:15
The Restaurant Brands International (RBI) assistant platform through 2025-09-06 allows a remote authenticated attacker to obtain a token with administrative privileges for the entire platform via the createToken GraphQL mutation.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| rbi | restaurant_brands_international_assistant | 𝑥 ≤ 2025-09-06 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References