CNNVD-202512-434 Information

CNNVD ID

CNNVD-202512-434

CVE-2025-65900

  • CNNVD Published: 2025-12-04

Description (Chinese)

Kalmia是Iridia Solutions Private Limited开源的一个文档内容管理系统。 Kalmia 0.2.0版本存在安全漏洞,该漏洞源于/kal-api/auth/users API端点权限验证不足,可能导致敏感信息泄露。

Description (English)

Kalmia is an open-source document content management system for Iridia Solutions Private Limited. There is a security loophole in Kalmia version 0.2.0, which stems from inadequate authentication of /kal-api/auth/users API endpoints, which may lead to the disclosure of sensitive information.

Hazard Level

Medium

Vulnerability Type

其他

Affected Vendor

Iridia Solutions Private Limited

Published

2025-12-04

Last Modified

2026-02-24

References

https://github.com/DifuseHQ/Kalmia https://github.com/Noxurge/CVE-2025-65900/blob/main/README.md

Share on: