← Back to CVEs
CVE-2025-11239
MEDIUM4.3
Description
Potentially sensitive information in jobs on KNIME Business Hub prior to 1.16.0 were visible to all members of the user's team. Starting with KNIME Business Hub 1.16.0 only metadata of jobs is shown to team members. Only the creator of a job can see all information including in- and output data (if present).
CVE Details
CVSS v3.1 Score4.3
SeverityMEDIUM
CVSS VectorCVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
Attack VectorNETWORK
ComplexityLOW
Privileges RequiredLOW
User InteractionNONE
Published10/2/2025
Last Modified10/8/2025
Sourcenvd
Honeypot Sightings0
Affected Products
knime:business_hub
Weaknesses (CWE)
CWE-863
References
https://www.knime.com/security/advisories(security@knime.com)
IOC Correlations
No correlations recorded
This product uses data from the NVD API but is not endorsed or certified by the NVD.