CVE-2025-61138
Published Nov 20, 2025
·Updated
Qlik Sense Enterprise v14.212.13 was discovered to contain an information leak via the /dev-hub/ directory.
Affected Software
2 affected components
Qlik Sense Enterprise
Qlik Qlik Sense=14.212.13
Event History
Nov 20, 2025
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·10:16 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-61138?
CVE-2025-61138 has been classified as a high-severity vulnerability due to the potential for information leakage.
2
How do I fix CVE-2025-61138?
To mitigate CVE-2025-61138, it's recommended to restrict access to the /dev-hub/ directory or apply the latest security updates from Qlik.
3
What software is affected by CVE-2025-61138?
CVE-2025-61138 affects Qlik Sense Enterprise version 14.212.13.
4
What type of vulnerability is CVE-2025-61138?
CVE-2025-61138 is an information leak vulnerability that exposes sensitive data through improper access controls.
5
Can CVE-2025-61138 be exploited remotely?
Yes, CVE-2025-61138 can potentially be exploited remotely if the /dev-hub/ directory is accessible to unauthorized users.