CVE-2025-59714: Medium severity Internet2 Grouper vulnerability
Published Sep 19, 2025
·Updated
In Internet2 Grouper 5.17.1 before 5.20.5, group admins who are not Grouper sysadmins can configure loader jobs.
Affected Software
2 affected components
Internet2 Grouper>5.17.1<=5.20.5
Internet2 Grouper>=5.17.1<5.20.5
Event History
Sep 19, 2025
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·03:15 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-59714?
CVE-2025-59714 is considered a medium severity vulnerability due to potential unauthorized configuration access.
2
How do I fix CVE-2025-59714?
To fix CVE-2025-59714, upgrade Internet2 Grouper to version 5.20.5 or later.
3
Who is affected by CVE-2025-59714?
CVE-2025-59714 affects group admins in Internet2 Grouper versions 5.17.1 to 5.20.4 who are not Grouper sysadmins.
4
What are the implications of CVE-2025-59714?
The implications of CVE-2025-59714 include the risk of unauthorized users configuring loader jobs, potentially leading to data breaches.
5
Is CVE-2025-59714 a zero-day vulnerability?
CVE-2025-59714 is not classified as a zero-day vulnerability since it has been publicly disclosed and a fix is available.