Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2025-14025

27
FAUCET Score

CVE-2025-14025 is a high-severity flaw in Ansible Automation Platform (AAP) that allows read-only OAuth2 API tokens to perform unauthorized write operations on backend services like Controller, Hub, and EDA. This vulnerability has a CVSS score of 8.5, indicating a high impact on confidentiality, integrity, and availability, with an attack vector over the network and high complexity. While there is no evidence of active exploitation, public exploit code, or significant community discussion, the potential for an attacker to bypass role-based access controls makes this a critical concern.

Impacted Technologies

VendorProductVersion(s)CPE
Red HatRed Hat Ansible Automation Platform 2.5 For RHEL 8
Range not provided by sourceCNA affecteddefault affected
Red HatRed Hat Ansible Automation Platform 2.5 For RHEL 9
Range not provided by sourceCNA affecteddefault affected
Red HatRed Hat Ansible Automation Platform 2.6 For RHEL 9
Range not provided by sourceCNA affecteddefault affected
Red HatRed Hat Ansible Automation Platform 2.5
Range not provided by sourceCNA affecteddefault affected
Red HatRed Hat Ansible Automation Platform 2.6
Range not provided by sourceCNA affecteddefault affected

CVSS Data

CVSS version used by this source: 3.1

8.5HIGH

CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H

Attack Vector
NETWORK
Attack Complexity
HIGH
Privileges Required
LOW
User Interaction
NONE
Scope
CHANGED
Confidentiality Impact
HIGH
Integrity Impact
HIGH
Availability Impact
HIGH
Exploitability Score
1.8
Impact Score
6.0
CvssVersion
3.1

Exploit Intelligence

EPSS Score
0.39%
Probability of exploitation in next 30 days
EPSS Percentile
31.5%
Percentile rank of EPSS score among Peer Group
As of 2026-07-27
Model: v2026.06.15
This CVE's current EPSS score of 0.0039 is in the 24th percentile among its peer group of 1,162 CVEs.

Social Chatter

The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.2 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.

Media Mentions

No media coverage found for this CVE.

The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Patch Available

Vendor Patches (5)

redhatpatch availablevia redhat_api
Product: Red Hat Ansible Automation Platform 2.5 for RHEL 8Fixed in: automation-gateway-0:2.5.20260106-1.el8ap
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Ansible Automation Platform 2.5 for RHEL 9Fixed in: automation-gateway-0:2.5.20260106-1.el9ap
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Ansible Automation Platform 2.6 for RHEL 9Fixed in: automation-gateway-0:2.6.20260106-1.el9ap
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Ansible Automation Platform 2.5Fixed in: ansible-automation-platform-25/gateway-rhel8:sha256:3185ac262d50774048ce041dd3fefa7d1109c6d9189b93368083a4aded415030
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Ansible Automation Platform 2.6Fixed in: ansible-automation-platform-26/gateway-rhel9:sha256:766c7570afc4e9b163a3256a0d7c699327905c1d24213229acb0b96a9e65b615
View patch

Vendor Advisories (1)

redhatCVE-2025-14025Important

ansible-automation-platform/aap-gateway: aap-gateway: Read-only Personal Access Token (PAT) bypasses write restrictions

Dec 4, 2025

References

access.redhat.com / articles/7136004
access.redhat.com / errata/RHSA-2026:0360
access.redhat.com / errata/RHSA-2026:0361
access.redhat.com / errata/RHSA-2026:0408
access.redhat.com / errata/RHSA-2026:0409
access.redhat.com / security/cve/CVE-2025-14025
bugzilla.redhat.com / show_bug.cgi