CVE-2025-24487
An unauthenticated attacker can infer the existence of usernames in the system by querying an API.
An unauthenticated attacker can infer the existence of usernames in the system by querying an API.
MEDIUM · CVSS 5.3
EPSS 0.0054
Monitor
- No active-exploitation, high-EPSS, or public-exploit signals - routine patching cadence
Sigma rules0
YARA rules0