CVE-2025-51867
Medium severity, CVSS 6.5. EPSS: 0.3% chance of exploitation in the next 30 days.
Insecure Direct Object Reference (IDOR) vulnerability in Deepfiction AI (deepfiction.ai) thru June 3, 2025, allowing attackers to chat with the LLM using other users' credits via sensitive information gained by the /browse/stories endpoint.
Published 2025-07-22. Last modified 2026-06-17.