Vulnerability Description
Applications using affected versions of Ehcache 3.x can experience degraded cache-write performance if the application using Ehcache utilizes keys sourced from (malicious) external parties in an unfiltered/unsalted way.
CVSS Score
LOW
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Ibm | Terracotta | >= 10.15.0, < 10.15.0.23 |
Related Weaknesses (CWE)
References
- https://www.ibm.com/support/pages/node/7247977Vendor Advisory
FAQ
What is CVE-2025-2529?
CVE-2025-2529 is a vulnerability with a CVSS score of 2.9 (LOW). Applications using affected versions of Ehcache 3.x can experience degraded cache-write performance if the application using Ehcache utilizes keys sourced from (malicious) external parties in an unfil...
How severe is CVE-2025-2529?
CVE-2025-2529 has been rated LOW with a CVSS base score of 2.9/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2025-2529?
Check the references section above for vendor advisories and patch information. Affected products include: Ibm Terracotta.