Information Leak in Qlik Sense Enterprise by Qlik
CVE-2025-61138

7.5HIGH

Key Information:

Vendor

Qlik

Vendor
CVE Published:
20 November 2025

What is CVE-2025-61138?

Qlik Sense Enterprise v14.212.13 has been identified to possess a vulnerability that allows for an information leak through the /dev-hub/ directory. This potential exposure could lead to unauthorized access to sensitive information, highlighting the need for prompt remediation and enhanced security measures to safeguard data integrity.

References

CVSS V3.1

Score:
7.5
Severity:
HIGH
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2025-61138 : Information Leak in Qlik Sense Enterprise by Qlik