CVE-2025-24899 | yogeshojha rengine 1.2.0/1.3.0 /api/listVulnerability/ information disclosure (GHSA-r3fp-xr9f-wv38)
A vulnerability was found in yogeshojha rengine 1.2.0/1.3.0. It has been declared as problematic. This vulnerability affects unknown code of the file /api/listVulnerability/. The manipulation leads to information disclosure.
This vulnerability was named CVE-2025-24899. The attack can be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.