
CVE-2025-66170 The CloudStack Backup plugin has an improper authorization logic in versions 4.21.0.0 and 4.22.0.0. Anyone with authenticated user-account access in CloudStack 4.21.0… https://www.cve.org/CVERecord?id=CVE-2025-66170
Post summary
A brief disclosure that CloudStack Backup plugin versions 4.21.0.0 and 4.22.0.0 contain an improper authorization logic vulnerability (CVE-2025-66170).

