Missing Authorization Vulnerability in AfterShip & Automizely AfterShip Tracking
CVE-2025-58201
5.3MEDIUM
What is CVE-2025-58201?
A missing authorization vulnerability exists in AfterShip & Automizely AfterShip Tracking that allows unauthorized access to functionality not properly restricted by access control lists (ACLs). This issue affects versions from n/a up to 1.17.17, potentially exposing sensitive operations to users without the appropriate permissions. It is crucial for users and administrators to remediate this vulnerability to secure their tracking functionalities and maintain the integrity of their data.
Affected Version(s)
AfterShip Tracking <= 1.17.17