cleantalk
Vulnerabilities and Security Researches

GDPR CCPA Compliance Support, CVE-2025-24591

CVE, Research URL

CVE-2025-24591

Published on
Jan 24, 2025
Research Description
Missing Authorization vulnerability in NinjaTeam GDPR CCPA Compliance Support allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects GDPR CCPA Compliance Support: from n/a through 2.7.1.
Affected versions
max 2.7.2.
Status
vulnerable