CVE-2025-30064: Cgm Clininet

High severity, CVSS 8.8. EPSS: 0.1% chance of exploitation in the next 30 days.

An insufficiently secured internal function allows session generation for arbitrary users. The decodeParam function checks the JWT but does not verify which signing algorithm was used. As a result, an attacker can use the "ex:action" parameter in the VerifyUserByThrustedService function to generate a session for any user.

Affected products

  • Cgm Cgm Clininet: before 2025.MS2 (fixed in 2025.MS2)

Published 2025-08-27. Last modified 2026-06-17.