CVE-2025-68663: Getoutline Outline
Medium severity, CVSS 5.3. EPSS: 0.3% chance of exploitation in the next 30 days.
Outline is a service that allows for collaborative documentation. Prior to 1.1.0, a vulnerability was found in Outline's WebSocket authentication mechanism that allows suspended users to maintain or establish real-time WebSocket connections and continue receiving sensitive operational updates after their account has been suspended. This vulnerability is fixed in 1.1.0.
Affected products
- Getoutline Outline: before 1.1.0 (fixed in 1.1.0)
Published 2026-02-11. Last modified 2026-06-17.