AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2025-12397

UNKNOWN · CVSS N/A EPSS 0.30%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2025-11-10 · Last synced 2026-08-04

CyberRota Analysis

This vulnerability has an unknown severity rating. It involves a SQL injection risk.

CVE
CVE-2025-12397
Severity
UNKNOWN
CVSS
N/A
EPSS
0.30%

Original NVD Description

A SQL injection vulnerability was found in Looker Studio. A Looker Studio user with report view access could inject malicious SQL that would execute with the report owner's permissions. The vulnerability affected to reports with BigQuery as the data source. This vulnerability was patched on 21 July 2025, and no customer action is needed.