Unrated severityNVD Advisory· Published Apr 10, 2025· Updated Apr 15, 2025
CVE-2025-0539
CVE-2025-0539
Description
In affected Microsoft Windows versions of Octopus Deploy, the server can be coerced into sending server-side requests that contain authentication material allowing a suitably positioned attacker to compromise the account running Octopus Server and potentially the host infrastructure itself.
Affected products
2- Octopus Deploy/Octopus Serverv5Range: 2.6.0
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1News mentions
0No linked articles in our index yet.