id: PYSEC-2026-1211 published: "2026-07-07T16:02:54.001219Z" modified: "2026-07-07T17:23:49.183459Z" aliases: - CVE-2025-49653 - GHSA-hxvr-gg2w-j48x summary: BackendAI vulnerable to Exposure of Sensitive Information to an Unauthorized Actor details: "Exposure of sensitive data in active sessions in Lablup's BackendAI allows attackers to retrieve credentials for users on the management platform.\n\nNOTE: The maintainers of BackendAI do not consider this report to fit with their threat model and advise users to follow security advice from https://github.com/lablup/backend.ai/pull/7587 in their instances to protect themselves from the conditions that would lead to the situation described in the CVE record." affected: - package: name: backend-ai ecosystem: PyPI purl: pkg:pypi/backend-ai ranges: - type: ECOSYSTEM events: - introduced: "0" - last_affected: 25.3.3 versions: - 1.0.0 - 1.0.1 - 1.0.2 - 1.1.0 - 1.2.0 - 1.3.0 - 1.4.0 - 18.12.0 - 19.3.0 - 19.3.0a1 - 19.9.0 - 20.3.0 - 20.3.1 - 20.9.0 - 20.9.0a1.dev0 - 21.3.0 - 22.3.0 references: - type: ADVISORY url: https://nvd.nist.gov/vuln/detail/CVE-2025-49653 - type: WEB url: https://github.com/lablup/backend.ai/pull/7587 - type: PACKAGE url: https://github.com/lablup/backend.ai - type: WEB url: https://hiddenlayer.com/sai_security_advisor/2025-05-backendai-49653 - type: WEB url: https://hiddenlayer.com/sai_security_advisor/2025-06-backendai - type: PACKAGE url: https://pypi.org/project/backend-ai - type: ADVISORY url: https://github.com/advisories/GHSA-hxvr-gg2w-j48x severity: - type: CVSS_V3 score: CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:C/C:H/I:H/A:H