CVE-2025-15623: Sparxsystems Pro Cloud Server
High severity, CVSS 7.5. EPSS: 0.3% chance of exploitation in the next 30 days.
Exposure of Private Personal Information to an Unauthorized Actor, : Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in Sparx Systems Pty Ltd. Sparx Pro Cloud Server. Unauthenticated user can retrieve database password in plaintext in certain situations
Affected products
- Sparxsystems Pro Cloud Server: version 6.0.163 only
Published 2026-04-17. Last modified 2026-10-07.