TRUfusion Enterprise versions 7.10.4.0 and earlier contained a vulnerability that allowed unauthenticated access to the Internal Admin Contact Page, resulting in the disclosure of PII (including partner and contact names).
id: CVE-2025-27225
info:
name: TRUfusion Enterprise <= 7.10.4.0 - Admin Contact Portal
author:
...