We use these services and cookies to improve your user experience. You may opt out if you wish, however, this may limit some features on this site.

Please see our statement on Data Privacy.

Crisp.chat (Helpdesk and Chat)

Ok

THREATINT
PUBLISHED

CVE-2025-47245



Description

In BlueWave Checkmate through 2.0.2 before d4a6072, an invite request can be modified to specify a privileged role.

Reserved 2025-05-03 | Published 2025-05-03 | Updated 2025-05-05 | Assigner mitre


HIGH: 8.1CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H

Problem types

CWE-472 External Control of Assumed-Immutable Web Parameter

Product status

Default status
unknown

Any version
affected

References

github.com/bluewave-labs/Checkmate/pull/2160

github.com/...ckmate/security/advisories/GHSA-7x3q-g6gq-f4mm

github.com/...ommit/d4a60723f490502b3fe6f7f780a85d29bf5d1385

cve.org (CVE-2025-47245)

nvd.nist.gov (CVE-2025-47245)

Download JSON

Share this page
https://cve.threatint.eu/CVE/CVE-2025-47245

Support options

Helpdesk Chat, Email, Knowledgebase