Unrated severityNVD Advisory· Published Jul 11, 2025· Updated Nov 21, 2025
Aap: sensitive cookie(s) set without security flags
CVE-2025-53861
Description
A flaw was found in Ansible. Sensitive cookies without security flags over non-encrypted channels can lead to Man-in-the-Middle (MitM) and Cross-site scripting (XSS) attacks allowing attackers to read transmitted data.
Affected products
1- Red Hat/Red Hat Ansible Automation Platform 2v5cpe:/a:redhat:ansible_automation_platform:2
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
2- access.redhat.com/security/cve/CVE-2025-53861mitrevdb-entryx_refsource_REDHAT
- bugzilla.redhat.com/show_bug.cgimitreissue-trackingx_refsource_REDHAT
News mentions
0No linked articles in our index yet.