Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Tue, 21 Oct 2025 09:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Neojapan
Neojapan chatluck |
|
| Vendors & Products |
Neojapan
Neojapan chatluck |
Thu, 16 Oct 2025 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 16 Oct 2025 09:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | ChatLuck contains an insufficient granularity of access control vulnerability in Invitation of Guest Users. If exploited, an uninvited guest user may register itself as a guest user. | |
| Weaknesses | CWE-1220 | |
| References |
| |
| Metrics |
cvssV3_0
|
Status: PUBLISHED
Assigner: jpcert
Published:
Updated: 2025-10-16T15:35:43.756Z
Reserved: 2025-09-02T01:35:15.755Z
Link: CVE-2025-54461
Updated: 2025-10-16T13:18:57.339Z
Status : Deferred
Published: 2025-10-16T09:15:34.337
Modified: 2026-04-15T00:35:42.020
Link: CVE-2025-54461
No data.
OpenCVE Enrichment
Updated: 2025-10-21T09:40:05Z