Scworld
Critical CVE-2025-47411 Vulnerability in Apache StreamPipes Allows Admin Account Takeovers
First seen 2 Jan 2026, 18:36 UTC
•
•86% similarity
•50.2
Share:
Export
Ask AI about this cluster
Analyzing cluster data...
Referenced clusters:
Something went wrong. Please try again.
Cluster AI
Ask questions about this threat cluster with AI-powered analysis.
Get Researcher $29.99/moArticle Content
Browse articles
A critical privilege escalation vulnerability, tracked as CVE-2025-47411, has been identified in Apache StreamPipes, affecting versions 0.69.0 through 0.97.0. This flaw allows ordinary users to manipulate JWT authentication tokens to gain admin privileges, potentially leading to complete control over admin accounts. The vulnerability stems from a faulty user identity creation mechanism.
ThreatCluster AI