CVE-2025-55795

Executive Summary

An authenticated attacker can exploit incremental user IDs and missing email ownership checks in OpenML v2.0.20241110 to change their email to that of a higher‑ID user. This reassigns the victim’s email to the attacker’s account, immediately locking the victim out and denying login access. While no private data is directly exposed, the vulnerability causes a denial‑of‑service and could facilitate further compromise.


Authoritative CVE Metadata - CVSS Base Score: 3.5 (LOW) - Published: 2025-09-29T15:16:08.533 - Last Modified: 2026-09-29T14:41:30.407

Original Description: The openml/openml.org web application version v2.0.20241110 uses incremental user IDs and insufficient email ownership verification during email update workflows. An authenticated attacker controlling a user account with a lower user ID can update their email address to that of another user with a higher user ID without proper verification. This results in the victim's email being reassigned to the attacker's account, causing the victim to be locked out immediately and unable to log in. The vulnerability leads to denial of service via account lockout but does not grant the attacker direct access to the victim's private data.

"The best cure for the body is a quiet mind."

— Napoleon Bonaparte
Source: NVD