CVE-2025-48927
🔥 Known Exploited (CISA KEV)MEDIUM
5.3
CVSS Severity Score
Vulnerability Description
The TeleMessage service through 2025-05-05 configures Spring Boot Actuator with an exposed heap dump endpoint at a /heapdump URI, as exploited in the wild in May 2025.
Affected Platforms (CPE)
📦
Smarsh
Telemessage
All versions
