Vulnerability Description
A security issue has been discovered in Couchbase Server before 7.6.4 and fixed in v.7.6.4 and v.7.2.7 for Windows that could allow unauthorized access to sensitive files. Depending on the level of privileges, this vulnerability may grant access to files such as /etc/passwd or /etc/shadow.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Couchbase | Couchbase Server | >= 2.0.0, < 7.2.7 |
| Microsoft | Windows | - |
Related Weaknesses (CWE)
References
- https://docs.couchbase.com/server/current/release-notes/relnotes.htmlRelease Notes
- https://forums.couchbase.com/tags/securityVendor Advisory
- https://www.couchbase.com/alerts/Vendor Advisory
FAQ
What is CVE-2025-46619?
CVE-2025-46619 is a vulnerability with a CVSS score of 7.6 (HIGH). A security issue has been discovered in Couchbase Server before 7.6.4 and fixed in v.7.6.4 and v.7.2.7 for Windows that could allow unauthorized access to sensitive files. Depending on the level of pr...
How severe is CVE-2025-46619?
CVE-2025-46619 has been rated HIGH with a CVSS base score of 7.6/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2025-46619?
Check the references section above for vendor advisories and patch information. Affected products include: Couchbase Couchbase Server, Microsoft Windows.