CVE-2025-25614: Changeweb Unifiedtransform
High severity, CVSS 8.8. EPSS: 0.8% chance of exploitation in the next 30 days.
Incorrect Access Control in Unifiedtransform 2.0 leads to Privilege Escalation, which allows teachers to update the personal data of fellow teachers.
Affected products
- Changeweb Unifiedtransform: version 2.0 only
Published 2025-03-10. Last modified 2026-06-17.