CVE-2025-57266 - ThriveX Blogging Framework API Key Disclosure Vulnerability
CVE ID : CVE-2025-57266
Published : Sept. 29, 2025, 9:15 p.m. | 1 hour, 46 minutes ago
Description : An issue was discovered in file AssistantController.java in ThriveX Blogging Framework 2.5.9 thru 3.1.3 allowing unauthenticated attackers to gain sensitive information such as API Keys via the /api/assistant/list endpoint.
Severity: 9.8 | CRITICAL
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
Published : Sept. 29, 2025, 9:15 p.m. | 1 hour, 46 minutes ago
Description : An issue was discovered in file AssistantController.java in ThriveX Blogging Framework 2.5.9 thru 3.1.3 allowing unauthenticated attackers to gain sensitive information such as API Keys via the /api/assistant/list endpoint.
Severity: 9.8 | CRITICAL
Visit the link for more details, such as CVSS details, affected products, timeline, and more...