CVE-2025-49618 – “Plesk Obsidian AWS Credentials Disclosure”
CVE ID : CVE-2025-49618
Published : July 3, 2025, 1:15 p.m. | 1 hour, 40 minutes ago
Description : In Plesk Obsidian 18.0.69, unauthenticated requests to /login_up.php can reveal an AWS accessKeyId, secretAccessKey, region, and endpoint.
Severity: 5.8 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more…