---
id: CVE-2025-64483
title: 'Wazuh is a security detection, visibility, and compliance open source project'
summary: >-
  Wazuh is a security detection, visibility, and compliance open source project.
  From version 4.9.0 to before 4.13.0, the Wazuh API – Agent Configuration in
  certain configurations allows authenticated users with read-only API roles to
  retr…
severity: none
cwe:
  - CWE-284
published: '2025-11-21'
updated: '2026-10-08'
sourceUpdated: '2026-10-08T10:10:00.227'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2025-64483'
references:
  - url: >-
      https://github.com/wazuh/wazuh-dashboard-plugins/commit/eac859f1ad0bf5eb8b0dbc7ea7eeef4bd22c3722
    label: security-advisories@github.com
  - url: >-
      https://github.com/wazuh/wazuh-dashboard-plugins/security/advisories/GHSA-gwf3-8gm3-qrmj
    label: security-advisories@github.com
tags:
  - nvd
epss: 0.00256
epssPercentile: 0.15745
ingestedAt: '2026-10-08T10:28:20.403Z'
---

## Overview

Wazuh is a security detection, visibility, and compliance open source project. From version 4.9.0 to before 4.13.0, the Wazuh API – Agent Configuration in certain configurations allows authenticated users with read-only API roles to retrieve agent enrollment credentials through the /utils/configuration endpoint. These credentials can be used to register new agents within the same Wazuh tenant without requiring elevated permissions through the UI. This issue has been patched in version 4.13.0.

## Remediation

Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
