216.73.217.174

CVE-2025-58130

· Published 12/12/2025 10:15 · Modified 18/12/2025 14:54

Labels: CVE-2025-58130 2025-12-12CVE-2025-58130[email protected]

Essential information

Published
12/12/2025 10:15
Modified
18/12/2025 14:54
Author
Creator
CVSS
9.1 CRITICAL (v3.1)
CISA KEV
No
CWE
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N

CVSS metrics

Description

Insufficiently Protected Credentials vulnerability in Apache Fineract. This issue affects Apache Fineract: through 1.11.0. The issue is fixed in version 1.12.1. Users are encouraged to upgrade to version 1.13.0, the latest release.

NVD status

Status
Analyzed — CVE has had analysis completed and all data associations made.
Source
[email protected]
NVD
View on NVD

Affected products (CPE)

ProductCPE
apache / fineract cpe:2.3:a:apache:fineract:*:*:*:*:*:*:*:*

References