CNNVD-202510-2726 Information

CNNVD ID

CNNVD-202510-2726

CVE-2025-60427

  • CNNVD Published: 2025-10-21

Description (Chinese)

Libretime是一个无线电广播和自动化平台。 Libretime 3.0.0-alpha.10及之前版本存在安全漏洞,该漏洞源于未验证基于角色的权限,可能导致信息泄露。

Description (English)

Libretime is a radio and automated platform. There is a security loophole in Libretime 3.0.0-alpha.10 and earlier versions, which stems from the failure to verify role-based authority and may lead to the disclosure of information.

Hazard Level

High

Vulnerability Type

其他

Published

2025-10-21

Last Modified

2026-02-24

References

https://beafn28.gitbook.io/beafn28/cve/broken-access-control-in-libretime-analytics-endpoints-cve-2025-60427 https://github.com/libretime/libretime https://github.com/libretime/libretime/issues/1251 https://access.redhat.com/security/cve/cve-2025-60427

Patch

https://github.com/libretime/libretime/releases

Share on: