Token Leakage in Himmelblau for Microsoft Azure Entra ID and Intune
CVE-2025-54781
What is CVE-2025-54781?
The Himmelblau interoperability suite for Microsoft Azure Entra ID and Intune contains a vulnerability where enabling debugging on version 1.0.0 results in the himmelblaud_tasks service inadvertently leaking an Intune service access token to the system journal. This token, although short-lived, can be exploited to ascertain the Intune compliance status of the host device and might allow unauthorized administrative actions, despite the APIs for these actions being undocumented. The vulnerability was addressed in version 1.1.0, and users are advised to disable debugging in Himmelblau to mitigate risks.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
himmelblau >= 1.0.0, < 1.1.0
References
CVSS V3.1
Timeline
Vulnerability published
