
CVE-2025-69207 - This one was kind of funny. IDOR on Notion oauth flow could allow me to link my notion to any other account and subsequently poison agent indexes.
Post summary
The text discloses that CVE-2025-69207 is an IDOR vulnerability in Notion’s OAuth flow, enabling an attacker to link an account to another and poison agent indexes.


