CVE-2025-48927
TeleMessage TM SGNL
The TeleMessage service through 2025-05-05 configures Spring Boot Actuator with an exposed heap dump endpoint at a /heapdump URI, as exploited in the wild in May 2025.
- CVSS
- 5.3
- EPSS
- 8.66% 94.6% percentile
- CISA KEV
- Listed
- Published
- 2025.05.29