Security Advisory

CVE-2025-61162

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-08-26 00:00:00
Last updated 2026-08-27 19:18:49
Assigner mitre
CVSS score 7.5
State PUBLISHED

Description

Incorrect access control in Cohere North AI v1.1.5 allows attackers to arbitrarily overwrite user info via a crafted request to the /api/internal/v1/users/{{USER_ID}} endpoint