CVE-2025-62236: Flyfrontier Frontier Airlines

Medium severity, CVSS 5.3. EPSS: 0.3% chance of exploitation in the next 30 days.

The Frontier Airlines website has a publicly available endpoint that validates if an email addresses is associated with an account. An unauthenticated, remote attacker could determine valid email addresses, possibly aiding in further attacks.

Affected products

  • Flyfrontier Frontier Airlines: affected versions not specified

Published 2025-10-23. Last modified 2026-10-08.