CVE-2025-31736

CVSS 3.1 Score 6.5 of 10 (medium)

Details

Published Apr 3, 2025
Updated: Apr 7, 2025
CWE ID 862

Summary

CVE-2025-31736 is a vulnerability affecting the Rich Text Editor from version n/a through 1.0.1. This issue involves missing authorization, allowing unauthorized users to exploit incorrectly configured access control security levels. As a result, attackers can manipulate the editor to gain unintended functionality or access sensitive data. Organizations running the affected version should apply the necessary patches to mitigate this risk and secure their systems.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share