CVE-2025-49651

Publication date

2025-06-09 17:25:11

Family

HiddenLayer

State

PUBLISHED

Description

Missing Authorization in Lablups BackendAI allows attackers to takeover all active sessions; Accessing, stealing, or altering any data accessible in the session. This vulnerability exists in all current versions of BackendAI.