CNNVD-202508-882 Information

CNNVD ID

CNNVD-202508-882

CVE-2025-8863

  • CNNVD Published: 2025-08-11

Description (Chinese)

YugabyteDB是美国Yugabyte公司的一款用于云原生应用程序的高性能事务性分布式 SQL 数据库。 YugabyteDB存在安全漏洞,该漏洞源于诊断信息通过HTTP传输可能导致敏感数据泄露。

Description (English)

YugabyteDB is a high-performance service distribution SQL database for cloud-based applications from Yugabyte, United States. YugabyteDB has a security loophole, which stems from the fact that the transmission of diagnostic information via HTTP could lead to the disclosure of sensitive data.

Hazard Level

Critical

Vulnerability Type

其他

Affected Vendor

Yugabyte

Published

2025-08-11

Last Modified

2026-02-24

References

https://docs.yugabyte.com/preview/secure/vulnerability-disclosure-policy/ https://access.redhat.com/security/cve/cve-2025-8863

Patch

https://github.com/yugabyte/yugabyte-db/releases

Share on: