CVE-2025-70363
EUVD-2025-20834106.03.2026, 17:16
Incorrect access control in the REST API of Ibexa & Ciril GROUP eZ Platform / Ciril Platform 2.x allows unauthenticated attackers to access sensitive data via enumerating object IDs.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| ibexa | ez_platform | 2.0.0 ≤ 𝑥 ≤ 2.5.32 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration