Apache Kafka Client contains arbitrary file read and server-side request forgery caused by untrusted configuration of sasl.oauthbearer.token.endpoint.url and sasl.oauthbearer.jwks.endpoint.url, letting attackers read files or send requests to unintended locations, exploit requires untrusted party to specify client configurations.
id: CVE-2025-27817
info:
name: Apache Kafka Client - Arbitrary File Read
author: 0x_Akoko
sev
...