CNNVD-202508-1377 Information

CNNVD ID

CNNVD-202508-1377

CVE-2025-54791

  • CNNVD Published: 2025-08-13

Description (Chinese)

OMERO.web是Open Microscopy Environment团队的一款用于从Web浏览器查看OMERO服务器上图像的客户端程序。 OMERO.web 5.29.2之前版本存在安全漏洞,该漏洞源于重置密码时错误消息泄露用户信息。

Description (English)

OMERO.web is a client of the Open Microscopy Environmental team to view images on the OMERO server from the Web Browser. There was a security loophole in the pre-OMERO.web 5.29.2 version, which resulted from the leaking of user information through false messages while resetting the password.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

Open Microscopy Environment

Published

2025-08-13

Last Modified

2026-02-24

References

https://github.com/ome/omero-web/commit/8aa2789e8f759c73f1517abe9a0abd44e86644ad https://github.com/ome/omero-web/security/advisories/GHSA-gpmg-4x4g-mr5r

Patch

https://github.com/ome/omero-web/releases

Share on: