CVE-2025-68621 | TriliumNext Trilium up to 0.100.x Sync Authentication Endpoint timing discrepancy (GHSA-hxf6-58cx-qq3x / EUVD-2025-206876)
A vulnerability was found in TriliumNext Trilium up to 0.100.x. It has been classified as problematic. Impacted is an unknown function of the component Sync Authentication Endpoint. Performing a manipulation results in observable timing discrepancy.
This vulnerability is identified as CVE-2025-68621. The attack can be initiated remotely. There is not any exploit available.
Upgrading the affected component is recommended.