CVE-2025-22512

CVSS 3.1 Score 4.3 of 10 (medium)

Details

Published Jan 7, 2025
CWE ID 862

Summary

CVE-2025-22512 is a critical vulnerability affecting Sprout Apps Help Scout. The issue involves missing authorization, allowing unauthorized access to potentially sensitive information. Malicious actors can exploit this vulnerability by taking advantage of incorrectly configured access control security levels. This vulnerability affects Help Scout versions from n/a through 6.5.1, putting numerous organizations using this software at risk. It is essential that users of these affected versions upgrade to a secure and patched version as soon as possible to mitigate the threat.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share