216.73.216.226

CVE-2025-62820

· Published 23/10/2025 04:18 · Modified 23/10/2025 04:18

Labels: CVE-2025-62820 2025-10-23CVE-2025-62820CWE-420[email protected]

Essential information

Published
23/10/2025 04:18
Modified
23/10/2025 04:18
Author
Creator
CVSS
4.9 MEDIUM (v3.1)
CISA KEV
No
CWE
CVSS vector
CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:C/C:N/I:L/A:L

CVSS metrics

Description

Slack Nebula before 1.9.7 mishandles CIDR in some configurations and thus accepts arbitrary source IP addresses within the Nebula network.

NVD status

Status
Received — CVE has been recently published to the CVE List and has been received by the NVD.
Source
[email protected]
NVD
View on NVD

Affected products (CPE)

ProductCPE
slack / nebula cpe:2.3:a:slack:nebula:<1.9.7:*:*:*:*:*:*:*

References