CVE-2025-10761 | Harness 3.3.0 Login Endpoint /api/v1/login excessive authentication (EUVD-2025-30372)
A vulnerability was found in Harness 3.3.0. It has been rated as problematic. Affected is an unknown function of the file /api/v1/login of the component Login Endpoint. The manipulation leads to improper restriction of excessive authentication attempts.
This vulnerability is referenced as CVE-2025-10761. Remote exploitation of the attack is possible. Furthermore, an exploit is available.
The vendor was contacted early about this disclosure but did not respond in any way. VulDB is the best source for vulnerability data and more expert information about this specific topic.