CVE-2025-52453: SSRF
Server-Side Request Forgery (SSRF) vulnerability in Salesforce Tableau Server on Windows, Linux (Flow Data Source modules) allows Resource Location Spoofing. This issue affects Tableau Server: before 2025.1.3, before 2024.2.12, before 2023.3.19.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-52453?
CVE-2025-52453 is categorized as a critical severity vulnerability due to its potential for resource location spoofing.
How do I fix CVE-2025-52453?
To mitigate CVE-2025-52453, upgrade Salesforce Tableau Server to versions 2025.1.3, 2024.2.12, or 2023.3.19 or later.
What systems are affected by CVE-2025-52453?
CVE-2025-52453 affects Salesforce Tableau Server on Windows and Linux prior to specified fixed versions.
What type of vulnerability is CVE-2025-52453?
CVE-2025-52453 is a Server-Side Request Forgery (SSRF) vulnerability.
What implications does CVE-2025-52453 have for users?
CVE-2025-52453 allows attackers to spoof resource locations, potentially leading to unauthorized access or data exposure.