Security Advisory

CVE-2025-9062

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-02-19 10:57:15
Last updated 2026-06-05 11:13:05
Assigner TR-CERT
CVSS score 7.3
State PUBLISHED

Description

Authorization Bypass Through User-Controlled Key vulnerability in MeCODE Informatics and Engineering Services Ltd. Envanty allows Parameter Injection. This issue affects Envanty: before 1.0.6.   NOTE: The vendor was contacted early about this disclosure but did not respond in any way. The vulnerability was learned to be remediated through reporter information and testing.