CVE-2025-27621 | UpTrain AI up to 0.7.1 Backend uptrain-access-token cross-domain policy
A vulnerability categorized as problematic has been discovered in UpTrain AI UpTrain up to 0.7.1. Affected by this vulnerability is an unknown functionality of the component Backend. Executing a manipulation of the argument uptrain-access-token can lead to permissive cross-domain policy with untrusted domains.
This vulnerability is handled as CVE-2025-27621. The attack can be executed remotely. There is not any exploit available.VulDB Recent EntriesRead More