CVE-2025-39513: Activedemand Online Agency Marketing Automation Activedemand
Medium severity, CVSS 5.3. EPSS: 0.6% chance of exploitation in the next 30 days.
Missing Authorization vulnerability in ActiveDEMAND Online Agency Marketing Automation ActiveDEMAND activedemand allows Accessing Functionality Not Properly Constrained by ACLs.This issue affects ActiveDEMAND: from n/a through <= 0.2.46.
Affected products
- Activedemand Online Agency Marketing Automation Activedemand: up to and including 0.2.46
Published 2025-04-16. Last modified 2026-06-17.