Junglewise Threat Intelligence

CVE-2025-54380: Opencast still publishes global system account credentials

CVE-2025-54380 · Severity: low · CVSS 3.1 · Published 2025-07-25

Technologies: org.opencastproject:opencast-common (Maven), org.opencastproject:opencast-kernel (Maven). Vendors: Maven.

Executive brief

Opencast still publishes global system account credentials

Affected products

  • Maven org.opencastproject:opencast-common
  • Maven org.opencastproject:opencast-publication-service-oaipmh-remote
  • Maven org.opencastproject:opencast-kernel
  • Maven org.opencastproject:opencast-ingest-service-impl

Related threats