CVE-2025-8737: ZLT2000 Microservices-Platform

Low severity, CVSS 3.5. EPSS: 0.2% chance of exploitation in the next 30 days.

A vulnerability, which was classified as problematic, was found in zlt2000 microservices-platform up to 6.0.0. This affects the function onLogoutSuccess of the file src/main/java/com/central/oauth/handler/OauthLogoutSuccessHandler.java. The manipulation of the argument redirect_url leads to open redirect. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.

Affected products

  • ZLT2000 Microservices-Platform: version 6.0 only

Published 2025-08-08. Last modified 2026-06-17.