CVE-2025-64487: Getoutline Outline
High severity, CVSS 7.6. EPSS: 0.2% chance of exploitation in the next 30 days.
Outline is a service that allows for collaborative documentation. Prior to 1.1.0, a privilege escalation vulnerability exists in the Outline document management system due to inconsistent authorization checks between user and group membership management endpoints. This vulnerability is fixed in 1.1.0.
Affected products
- Getoutline Outline: before 1.1.0 (fixed in 1.1.0)
Published 2026-02-11. Last modified 2026-06-17.