Description
The database for the web application is exposed without authentication, allowing an unauthenticated remote attacker to gain unauthorized access and potentially compromise it.
Problem types
CWE-306 Missing Authentication for Critical Function
Product status
0.0.0 (semver) before 1.1.0
0.0.0 (semver) before 2.3.3
References
certvde.com/de/advisories/VDE-2025-087