CVE-2025-15623: Sparxsystems Pro Cloud Server

High severity, CVSS 7.5. EPSS: 0.3% chance of exploitation in the next 30 days.

Exposure of Private Personal Information to an Unauthorized Actor, : Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in Sparx Systems Pty Ltd. Sparx Pro Cloud Server. Unauthenticated user can retrieve database password in plaintext in certain situations

Affected products

Published 2026-04-17. Last modified 2026-10-07.