Security Advisory

CVE-2025-55797

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2025-09-30 00:00:00
Last updated 2025-10-01 19:57:56
Assigner mitre
State PUBLISHED

Description

An improper access control vulnerability in FormCms v0.5.4 in the /api/schemas/history/[schemaId] endpoint allows unauthenticated attackers to access historical schema data if a valid schemaId is known or guessed.