First published: Thu Jan 09 2025(Updated: )
<p>A Server-Side Request Forgery (SSRF) vulnerability in Microsoft Purview allows an authorized attacker to disclose information over a network.</p>
Credit: secure@microsoft.com
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft Purview | ||
Microsoft Purview |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-21385 is categorized as a critical severity vulnerability due to its potential to allow unauthorized information disclosure.
To mitigate CVE-2025-21385, ensure that you apply the latest security updates provided by Microsoft for Purview.
Authorized users of Microsoft Purview may be vulnerable to CVE-2025-21385.
CVE-2025-21385 is a Server-Side Request Forgery (SSRF) vulnerability.
An attacker exploiting CVE-2025-21385 can disclose sensitive information over a network.