← Back to CVE List

CVE-2025-30281

Published: 2025-04-08T20:15Z
Last Modified: 2025-04-08T20:15Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
ColdFusion versions 2023.12, 2021.18, 2025.0 and earlier are affected by an Improper Access Control vulnerability that could result in arbitrary file system read. An attacker could leverage this vulnerability to access or modify sensitive data without proper authorization. Exploitation of this issue does not require user interaction. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt