Vulnerability Description
A vulnerability classified as problematic has been found in 274056675 springboot-openai-chatgpt e84f6f5. This affects the function deleteChat of the file /api/mjkj-chat/chat/ai/delete/chat of the component Chat History Handler. The manipulation of the argument chatListId leads to improper access controls. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| 274056675 | Springboot-Openai-Chatgpt | 2024-12-29 |
Related Weaknesses (CWE)
References
- https://vuldb.com/?ctiid.299799Permissions RequiredVDB Entry
- https://vuldb.com/?id.299799Third Party AdvisoryVDB Entry
- https://vuldb.com/?submit.505688Third Party AdvisoryVDB Entry
- https://www.cnblogs.com/aibot/p/18732182ExploitThird Party Advisory
- https://www.cnblogs.com/aibot/p/18732182ExploitThird Party Advisory
FAQ
What is CVE-2025-2334?
CVE-2025-2334 is a vulnerability with a CVSS score of 5.4 (MEDIUM). A vulnerability classified as problematic has been found in 274056675 springboot-openai-chatgpt e84f6f5. This affects the function deleteChat of the file /api/mjkj-chat/chat/ai/delete/chat of the comp...
How severe is CVE-2025-2334?
CVE-2025-2334 has been rated MEDIUM with a CVSS base score of 5.4/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2025-2334?
Check the references section above for vendor advisories and patch information. Affected products include: 274056675 Springboot-Openai-Chatgpt.