CVE-2025-30373 | Graylog2 Server up to 6.1.8 HTTP Response improper authorization (GHSA-q7g5-jq6p-6wvx)
A vulnerability was found in Graylog2 Server up to 6.1.8. It has been classified as critical. This affects an unknown function of the component HTTP Response Handler. The manipulation leads to improper authorization.
This vulnerability is uniquely identified as CVE-2025-30373. The attack is possible to be carried out remotely. No exploit exists.
Upgrading the affected component is recommended.