{"id":"CVE-2025-14882","aliases":[],"url":"https://o3.security/vulnerability/CVE-2025-14882","summary":"An API endpoint allowed access to sensitive files from other users by knowing the UUID of the file that were not intended to be accessible by UUID only.","details":"An API endpoint allowed access to sensitive files from other users by knowing the UUID of the file that were not intended to be accessible by UUID only.","published":"2025-12-19T13:16:02.993","modified":"2026-06-17T08:36:42.370","cvss":null,"epss":null,"cisaKev":null,"exploitsKnown":0,"affectedPackages":[],"fix":null,"references":[{"type":"WEB","url":"https://pretix.eu/about/en/blog/20251218-release-2025-10-1/"}],"provenance":{"sources":["OSV.dev","NVD","FIRST.org (EPSS)"],"lastVerified":"2026-06-17T08:36:42.370"}}