Security Advisory
CVE-2025-12031
5.3
MEDIUM
Vulnerability Description
HTTP Security Misconfiguration - Lacking Secure and HTTPOnly Attribute may allow reading the sensitive cookies from the javascript contextThis issue affects BLU-IC2: through 1.19.5; BLU-IC4: through 1.19.5.
Published Date
October 21, 2025
Official Source
NIST NVD Advisory