CVE-2025-64520
EUVD-2025-20385516.12.2025, 22:15
GLPI is a free asset and IT management software package. Starting in version 9.1.0 and prior to version 10.0.21, an unauthorized user with an API access can read all knowledge base entries. Users should upgrade to 10.0.21 to receive a patch.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| glpi-project | glpi | 9.1.0 ≤ 𝑥 < 10.0.21 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration