CYBER CODE RED

Get real-time updates on Telegram

P5Verified

CVE-2025-41090: microCLAUDIA 3.2.0

CVE-2025-41090. EPSS 0.00339 (percentile 0.25196), scored 2026-10-06.

Affected technology

microCLAUDIA · 3.2.0
CCN-CERT

Description’s affected range: v3.2.0 and prior

Component: Not specified by the source

Attack conditions (Vendor/CNA, CVSS 4.0): Network (remote) · Low privileges required · No user interaction required

What an attacker can do

An authenticated user can perform unauthorized actions on other organizations' systems by sending direct API requests. Vendor/CNA’s CVSS 4.0 assessment (base score 7.6/10) rates confidentiality and integrity impact as high; availability impact as low.

Published

CWE
CWE-306
CCR priority
0.1 /100 (P5)
EPSS
0.00339 · percentile 0.25305 · 2026-10-08
KEV
no

Provenance

Stable permalink: https://cybercodered.org/item/cve-cve-2025-41090.html