PT-2025-35722 · Mautic · Mautic

B0D0B0P0T

+2

·

Published

2025-09-03

·

Updated

2025-09-03

·

CVE-2025-9822

CVSS v3.1

5.5

Medium

VectorAV:N/AC:L/PR:H/UI:N/S:U/C:H/I:L/A:N
Name of the Vulnerable Software and Affected Versions mautic (affected versions not specified)
Description A user with administrator rights can modify the application’s configuration and extract sensitive information that is normally inaccessible. This allows an administrator to disclose parameters, such as database credentials, to which they should not have access.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Weakness Enumeration

Related Identifiers

CVE-2025-9822
GHSA-438M-6MHW-HQ5W

Affected Products

Mautic