CVE-2025-25615: Changeweb Unifiedtransform

Low severity, CVSS 2.7. EPSS: 0.5% chance of exploitation in the next 30 days.

Unifiedtransform 2.0 is vulnerable to Incorrect Access Control which allows viewing attendance list for all class sections.

Affected products

Published 2025-03-10. Last modified 2026-06-17.