Back to Database
Status published
Medium
CVE-2025-30143
Rule 3000216 (before version 2) in Akamai App & API...
Vulnerability Description
Rule 3000216 (before version 2) in Akamai App & API Protector (with Akamai ASE) before 2024-12-10 does not properly consider JavaScript variable assignment to built-in functions and properties.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2025-30143
Credits & Attribution
No credits recorded in the NVD database.
References
More from Akamai
View All →CVE-2025-54568
Akamai Rate Control alpha before 2025 allows attackers to send...
Low
3.7
CVE-2025-54142
Akamai Ghost before 2025-07-21 allows HTTP Request Smuggling via an...
Medium
4
CVE-2025-53841
The GC-AGENTS-SERVICE running as part of Akamai´s Guardicore Platform Agent...
High
7.8
CVE-2025-52491
Akamai CloudTest before 60 2025.06.09 (12989) allows SSRF....
Medium
5.8
CVE-2025-49493
Akamai CloudTest before 60 2025.06.02 (12988) allows file inclusion via...
Medium
5.8
Affected Vendor
Akamai
View all reports →Affected Software
App & API Protector
Vulnerable Versions:
0
Timeline
Official Publish:
March 17th, 2025
Last Modified:
March 17th, 2025
Added to House:
July 22nd, 2026
CVSS Vectors
V3:
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:L/I:L/A:N