Improper Access Control in Escalade Plugin for GLPI
CVE-2025-27153
6.5MEDIUM
What is CVE-2025-27153?
The Escalade GLPI plugin, designed to assist in ticket escalation processes, suffers from an improper access control vulnerability prior to version 2.9.11. This vulnerability can allow unauthorized access, leading to potential data exposure and disruptions in the workflow. Users are strongly advised to update to version 2.9.11 or later to mitigate this risk and ensure secure operations.
Affected Version(s)
escalade < 2.9.11