CVE-2025-0740
CVE-2025-0740
Jue, 30/01/2025 – 11:15
CVE-2025-0740
2.1 and below. This vulnerability allows an authenticated attacker to obtain chat messages belonging to other users by changing the “CHAT_ID” of the endpoint "/embedai/chats/load_messages?chat_id=".
https://www.incibe.es/en/incibe-cert/notices/aviso/multiple-vulnerabilities-embedai