CVE-2025-62236: Flyfrontier Frontier Airlines
Medium severity, CVSS 5.3. EPSS: 0.3% chance of exploitation in the next 30 days.
The Frontier Airlines website has a publicly available endpoint that validates if an email addresses is associated with an account. An unauthenticated, remote attacker could determine valid email addresses, possibly aiding in further attacks.
Affected products
- Flyfrontier Frontier Airlines: affected versions not specified
Published 2025-10-23. Last modified 2026-10-08.