CVE-2025-48043
Dashboard / Vulnerabilities / CVE-2025-48043
CVE-2025-48043
Summary: Bypass and runtime policies that can never pass may be incorrectly applied in filter authorization
Details: Incorrect Authorization vulnerability in ash-project ash allows Authentication Bypass. This issue affects ash: from 0.1.1 before 3.6.2.
References: https://cna.erlef.org/cves/CVE-2025-48043.html, https://github.com, https://osv.dev/vulnerability/EEF-CVE-2025-48043, https://repo.hex.pm, https://github.com/CVEProject/cvelistV5/tree/main/cves/2025/48xxx/CVE-2025-48043.json, https://github.com/ash-project/ash/security/advisories/GHSA-7r7f-9xpj-jmr7, https://nvd.nist.gov/vuln/detail/CVE-2025-48043, https://github.com/ash-project/ash/commit/4c41344126b0aba09ec3085517000f8aefec299e, https://github.com/ash-project/ash/commit/66d81300065b970da0d2f4528354835d2418c7ae, https://github.com/ash-project/ash
Affected packages
Package
Name:
Purl:
Affected ranges
Type: GIT
Events:
