CVE-2025-48043
ash-project ash
Incorrect Authorization vulnerability in ash-project ash allows Authentication Bypass. This vulnerability is associated with program files lib/ash/policy/authorizer/authorizer.ex and program routines 'Elixir.Ash.Policy.Authorizer':strict_filters/2. This issue affects ash: from 0.1.0 before 3.6.2.
- CVSS
- 8.6
- EPSS
- 0.46% 37.9% percentile
- CISA KEV
- Not listed
- Published
- 2025.10.11