PT-2025-35722 · Mautic · Mautic

·

CVE-2025-9822

·

Published

2025-09-03

·

Updated

2025-09-03

CVSS v3.1

5.5

Medium

VectorAV:N/AC:L/PR:H/UI:N/S:U/C:H/I:L/A:N
Name of the Vulnerable Software and Affected Versions mautic (affected versions not specified)
Description A user with administrator rights can modify the application’s configuration and extract sensitive information that is normally inaccessible. This allows an administrator to disclose parameters, such as database credentials, to which they should not have access.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2025-9822
GHSA-438M-6MHW-HQ5W

Affected Products

Mautic