CVE-2025-11158 | Hitachi Vantara Pentaho Data Integration and Analytics 10.2.0.4 Groovy Script authorization (EUVD-2025-208457)
A vulnerability classified as problematic has been found in Hitachi Vantara Pentaho Data Integration and Analytics 10.2.0.4. Affected is an unknown function of the component Groovy Script Handler. Performing a manipulation results in missing authorization.
This vulnerability is reported as CVE-2025-11158. The attack is possible to be carried out remotely. No exploit exists.
It is recommended to upgrade the affected component.