CVE-2025-12969

Fluent Bit in_forward input plugin does not properly enforce the security.users authentication mechanism under certain configuration conditions. This allows remote attackers with network access to the Fluent Bit instance exposing the forward input to send unauthenticated data. By bypassing authentication controls, attackers can inject forged log records, flood alerting systems, or manipulate routing decisions, compromising the authenticity and integrity of ingested logs.
Configurations

Configuration 1 (hide)

cpe:2.3:a:treasuredata:fluent_bit:4.1.0:*:*:*:*:*:*:*

History

No history.

Information

Published : 2025-11-24 15:15

Updated : 2025-11-28 18:15


NVD link : CVE-2025-12969

Mitre link : CVE-2025-12969

CVE.ORG link : CVE-2025-12969


JSON object : View

Products Affected

treasuredata

  • fluent_bit
CWE
CWE-306

Missing Authentication for Critical Function