CVE-2025-63389 | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

A critical authentication bypass vulnerability exists in Ollama platform's API endpoints in versions prior to and including v0.12.3. The platform exposes multip…
Critical CVSS: 9.8

CVE-2025-63389

A critical authentication bypass vulnerability exists in Ollama platform's API endpoints in versions prior to and including v0.12.3. The platform exposes multiple API endpoints without requiring authentication, enabling remote attackers to perform unauthorized model management operations.
Vendor
Ollama
Product
Ollama
CWE
CWE-306
Yayın Tarihi
2025-12-18 16:15:54
Güncelleme
2026-01-22 18:16:43
Source Identifier
cve@mitre.org
KEV Date Added
-

Kategoriler

Referanslar