VYPR
High severity7.6NVD Advisory· Published Nov 26, 2025· Updated Apr 15, 2026

CVE-2025-13084

CVE-2025-13084

Description

The users endpoint in the groov View API returns a list of all users and associated metadata including their API keys. This endpoint requires an Editor role to access and will display API keys for all users, including Administrators.

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

3

News mentions

0

No linked articles in our index yet.