CVE-2025-8738: zlt2000 microservices-platform Spring Actuator Interface actuator information disclosure
A vulnerability has been found in zlt2000 microservices-platform up to 6.0.0 and classified as problematic. This vulnerability affects unknown code of the file /actuator of the component Spring Actuator Interface. The manipulation leads to information disclosure. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-8738?
CVE-2025-8738 is classified as a problematic vulnerability that can lead to information disclosure.
How do I fix CVE-2025-8738?
To mitigate CVE-2025-8738, upgrade zlt2000 microservices-platform to version 6.0.1 or later.
What components are affected by CVE-2025-8738?
CVE-2025-8738 affects the Spring Actuator Interface of zlt2000 microservices-platform up to version 6.0.0.
What type of attack vector is associated with CVE-2025-8738?
CVE-2025-8738 allows attackers to exploit the Spring Actuator Interface to perform information disclosure.
Is CVE-2025-8738 exploitable remotely?
Yes, CVE-2025-8738 can be exploited remotely by accessing the affected endpoints of the Spring Actuator Interface.