Description
The configuration file containing database logins and passwords is readable by any local user.
Problem types
CWE-732 Incorrect Permission Assignment for Critical Resource
Product status
Any version before 2024.MS4
Credits
Maciej Kazulak
References
cert.pl/en/posts/2025/08/CVE-2025-2313/