THREATOPS
THREAT OPSThreat News › [NVD] CVE-2025-13808 (HIGH 7.3) — A flaw has been found in orionsec orion-ops up to 5925824997a3109651bbde07460958a7be249ed1. Affected by this vulnerability is the function update of the file orion-ops-api/orion-ops-web/src/main/java/cn/orionsec/ops/controller/UserController.java of the component User Profile Han

[NVD] CVE-2025-13808 (HIGH 7.3) — A flaw has been found in orionsec orion-ops up to 5925824997a3109651bbde07460958a7be249ed1. Affected by this vulnerability is the function update of the file orion-ops-api/orion-ops-web/src/main/java/cn/orionsec/ops/controller/UserController.java of the component User Profile Han

lownvdPublished 2025-12-01

CVE-2025-13808 CVSS: 7.3 HIGH Published: 2025-12-01T05:16:04.070

A flaw has been found in orionsec orion-ops up to 5925824997a3109651bbde07460958a7be249ed1. Affected by this vulnerability is the function update of the file orion-ops-api/orion-ops-web/src/main/java/cn/orionsec/ops/controller/UserController.java of the component User Profile Handler. This manipulation of the argument ID causes impr

Indicators of compromise

Original source: https://nvd.nist.gov/vuln/detail/CVE-2025-13808