CVE-2025-30368 | Zulip up to 10.0 authorization bypass through user-controlled sql primary key (GHSA-rmhr-5ffq-qcrc)
A vulnerability described as problematic has been identified in Zulip up to 10.0. Affected is an unknown function. The manipulation results in authorization bypass through user-controlled sql primary key.
This vulnerability is reported as CVE-2025-30368. The attack can be launched remotely. No exploit exists.
Upgrading the affected component is recommended.