CVE-2025-53106 | Graylog2 graylog2-server up to 6.2.3/6.3.0-rc.1 REST API improper authorization (EUVD-2025-19760)
A vulnerability was found in Graylog2 graylog2-server up to 6.2.3/6.3.0-rc.1. It has been classified as critical. This affects an unknown part of the component REST API. Performing manipulation results in improper authorization.
This vulnerability was named CVE-2025-53106. The attack may be initiated remotely. There is no available exploit.
Upgrading the affected component is recommended.