CVE-2025-31484 | conda-forge infrastructure up to 2025-04-01 Azure Token access control (GHSA-m4h2-49xf-vq72)
A vulnerability was found in conda-forge infrastructure up to 2025-04-01 and classified as very critical. This issue affects some unknown processing of the component Azure Token Handler. The manipulation leads to improper access controls.
The identification of this vulnerability is CVE-2025-31484. The attack may be initiated remotely. There is no exploit available.
It is recommended to apply a patch to fix this issue.