Back

MEDIUM

Exposure of Sensitive Information

Published Oct 8, 2025

Description

Successful exploitation of the vulnerability could allow an unauthenticated attacker to gain access to a victim’s Sync account data such as account credentials and email protection information.

Affected products

Remediation

Vendor solution

Users of affected product versions are advised to update to DuckDuckGo version 5.247.0 immediately.

References (3)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner CSA
Published Oct 8, 2025
Updated Oct 8, 2025
Reserved May 22, 2025
CISA Vulnrichment
Updated Oct 8, 2025
NVD
Status Deferred
Modified Jun 17, 2026
Red Hat
Severity n/a
Public date n/a
ENISA EUVD
Assigner CSA
Published Oct 8, 2025
Updated Oct 8, 2025
Exploited since n/a
EUVD-2025-31840