CVE-2025-27817 is a high-severity arbitrary file read and Server-Side Request Forgery (SSRF) vulnerability affecting Apache Kafka Clients. Specifically, it allows an attacker to manipulate the "sasl.oauthbearer.token.endpoint.url" and "sasl.oauthbearer.jwks.endpoint.url" configurations to read arbitrary files, environment variables, or send requests to unintended locations. With a CVSS score of 7.5 (HIGH), this vulnerability has a low attack complexity and can lead to significant information disclosure. While there is no evidence of active exploitation, Nuclei templates exist for this vulnerability, and it has garnered substantial community discussion, indicating potential interest from threat actors.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
>= 3.1.0, < 3.9.1CPE matchmatch criteria | cpe:2.3:a:apache:kafka:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.