Junglewise Threat Intelligence

CVE-2025-49143: PYSEC-2026-1689 - Nautobot may allows uploaded media files to be accessible without authentication

CVE-2025-49143 · Severity: medium · CVSS 4 · Published 2026-07-07

Technologies: nautobot (PyPI). Vendors: PyPI.

Executive brief

Nautobot may allows uploaded media files to be accessible without authentication

Affected products

  • PyPI nautobot

Related threats