CVE-2025-51479 | Onyx Enterprise Edition 0.27.0 PATCH Request id authorization
A vulnerability classified as critical was found in Onyx Enterprise Edition 0.27.0. This impacts an unknown function of the file /api/manage/admin/user-group/id of the component PATCH Request Handler. Such manipulation leads to authorization bypass.
This vulnerability is uniquely identified as CVE-2025-51479. The attack can be launched remotely. No exploit exists.
A patch should be applied to remediate this issue.