CVE-2025-67274
Unknown
Unknown - Not Provided
Information Disclosure in continuous.software Aangine via Multiple Modules
Publication date: 2026-01-26
Last updated on: 2026-02-12
Assigner: MITRE
Description
Description
An issue in continuous.software aangine v.2025.2 allows a remote attacker to obtain sensitive information via the excel-integration-service template download module, integration-persistence-service job listing module, portfolio-item-service data retrieval module endpoints
CVSS Scores
EPSS Scores
| Probability: | |
| Percentile: |
Meta Information
Affected Vendors & Products
| Vendor | Product | Version / Range |
|---|---|---|
| continuous.software | aangine | 2025.2 |
Helpful Resources
Exploitability
| CWE ID | Description |
|---|---|
| CWE-200 | The product exposes sensitive information to an actor that is not explicitly authorized to have access to that information. |