CVE-2025-56423: Craws Openatlas

Medium severity, CVSS 5.3. EPSS: 0.3% chance of exploitation in the next 30 days.

An issue in Austrian Academy of Sciences (AW) Austrian Archaeological Institute OpenAtlas v.8.12.0 allows a remote attacker to obtain sensitive information via the login error messages

Affected products

  • Craws Openatlas: before 8.12.1 (fixed in 8.12.1)

Published 2025-11-24. Last modified 2026-06-17.