AUGUST 5, 2026
Live Feed
Back to database
Case File

CVE-2025-29868

MEDIUM · CVSS 6.5 EPSS 0.87%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2025-04-01 · Last synced 2026-08-04

CyberRota Analysis

This is a medium severity vulnerability with a CVSS score of 6.5. It affects Apache.

CVE
CVE-2025-29868
Severity
MEDIUM
CVSS
6.5
EPSS
0.87%
Apache

Original NVD Description

Private Data Structure Returned From A Public Method vulnerability in Apache Answer. This issue affects Apache Answer: through 1.4.2. If a user uses an externally referenced image, when a user accesses this image, the provider of the image may obtain private information about the ip address of that accessing user. Users are recommended to upgrade to version 1.4.5, which fixes the issue. In the new version, administrators can set whether external content can be displayed.

Related CVEs

Other vulnerabilities affecting the same vendor(s)