Potentially sensitive information in jobs on KNIME Business Hub prior to 1.16.0 were visible to all members of the user's team. Starting with KNIME Business Hub 1.16.0 only metadata of jobs is shown to team members. Only the creator of a job can see all information including in- and output data (if present).
References
| Link | Resource |
|---|---|
| https://www.knime.com/security/advisories | Vendor Advisory |
Configurations
History
08 Oct 2025, 17:17
| Type | Values Removed | Values Added |
|---|---|---|
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 4.3 |
| First Time |
Knime business Hub
Knime |
|
| References | () https://www.knime.com/security/advisories - Vendor Advisory | |
| CPE | cpe:2.3:a:knime:business_hub:*:*:*:*:*:*:*:* |
02 Oct 2025, 13:15
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2025-10-02 13:15
Updated : 2025-10-08 17:17
NVD link : CVE-2025-11239
Mitre link : CVE-2025-11239
CVE.ORG link : CVE-2025-11239
JSON object : View
Products Affected
knime
- business_hub
CWE
CWE-863
Incorrect Authorization
