Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
| Link | Providers |
|---|---|
| https://www.knime.com/security/advisories |
|
Wed, 08 Oct 2025 17:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:knime:business_hub:*:*:*:*:*:*:*:* | |
| Metrics |
cvssV3_1
|
Fri, 03 Oct 2025 08:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Knime
Knime business Hub |
|
| Vendors & Products |
Knime
Knime business Hub |
Thu, 02 Oct 2025 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 02 Oct 2025 13:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | An open redirect vulnerability existed in KNIME Business Hub prior to version 1.16.0. An unauthenticated remote attacker could craft a link to a legitimate KNIME Business Hub installation which, when opened by the user, redirects the user to a page of the attackers choice. This might open the possibility for fishing or other similar attacks. The problem has been fixed in KNIME Business Hub 1.16.0. | |
| Title | Open redirect vulnerability in KNIME Business Hub | |
| Weaknesses | CWE-601 | |
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: KNIME
Published:
Updated: 2025-10-02T15:52:13.041Z
Reserved: 2025-10-02T12:23:48.996Z
Link: CVE-2025-11240
Updated: 2025-10-02T15:18:17.076Z
Status : Analyzed
Published: 2025-10-02T13:15:31.370
Modified: 2025-10-08T17:17:13.523
Link: CVE-2025-11240
No data.
OpenCVE Enrichment
Updated: 2025-10-03T08:22:46Z