HIGH 7.5 NVD
CVE-2025-60931
An Insecure Direct Object Reference (IDOR) in the Employee Compensation View function of Infor Global HR v11.24.10.01.33 allows unauthorized attackers to arbitr
An Insecure Direct Object Reference (IDOR) in the Employee Compensation View function of Infor Global HR v11.24.10.01.33 allows unauthorized attackers to arbitrarily view the compensation information of other employees via a crafted GET request.
References
- https://docs.offsecguy.com/cve/infor/vulnerability/insecure-direct-object-references-idor
- https://docs.offsecguy.com/cve/infor/vulnerability/insecure-direct-object-references-idor
This high severity vulnerability with a CVSS score of 7.5 was published on 2026-07-29 via NVD.
vulnfeed aggregates 9166 vulnerabilities from NVD, CISA KEV,
Ubuntu, Debian, Red Hat, Kubernetes, Exploit-DB, OSS-Security, GitHub and OpenStack — updated every 4 hours.