---
id: CVE-2025-30188
title: >-
  Malicious or unintentional API requests can be used to add significant amount
  of data to caches
summary: >-
  Malicious or unintentional API requests can be used to add significant amount
  of data to caches. Caches may evict information that is required to operate
  the web frontend, which leads to unavailability of the component. Please
  deploy the…
severity: high
cvss: 7.5
cvssVector: 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H'
cwe:
  - CWE-400
published: '2025-10-31'
updated: '2026-10-07'
sourceUpdated: '2026-10-07T21:10:00.200'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2025-30188'
references:
  - url: >-
      https://documentation.open-xchange.com/appsuite/security/advisories/csaf/2025/oxas-adv-2025-0002.json
    label: security@open-xchange.com
tags:
  - nvd
epss: 0.00371
epssPercentile: 0.28928
ingestedAt: '2026-10-07T21:54:14.915Z'
---

## Overview

Malicious or unintentional API requests can be used to add significant amount of data to caches. Caches may evict information that is required to operate the web frontend, which leads to unavailability of the component. Please deploy the provided updates and patch releases. No publicly available exploits are known

## Remediation

Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
