CVE-2025-46690

CVSS 3.1 Score 8.8 of 10 (high)

Details

Published Apr 27, 2025
Updated: May 12, 2025
CWE ID 425

Summary

CVE-2025-46690 is a vulnerability affecting Ververica Platform version 2.14.0. This issue enables low-privileged users to gain unauthorized access to SQL connectors through a direct request to the namespaces/default/formats endpoint. Successful exploitation of this vulnerability could potentially expose sensitive data or enable further unauthorized actions within the system. System administrators are advised to update their Ververica Platform installation as soon as possible to mitigate this risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • Ververica Platform

Affected Vendors

  • Ververica