CVE-2025-64513 Details
Description
Milvus is an open-source vector database built for generative AI applications. An unauthenticated attacker can exploit a vulnerability in versions prior to 2.4.24, 2.5.21, and 2.6.5 to bypass all authentication mechanisms in the Milvus Proxy component, gaining full administrative access to the Milvus cluster. This grants the attacker the ability to read, modify, or delete data, and to perform privileged administrative operations such as database or collection management. This issue has been fixed in Milvus 2.4.24, 2.5.21, and 2.6.5. If immediate upgrade is not possible, a temporary mitigation can be applied by removing the sourceID header from all incoming requests at the gateway, API gateway, or load balancer level before they reach the Milvus Proxy. This prevents attackers from exploiting the authentication bypass behavior.
A critical authentication bypass vulnerability has been identified in the Milvus Proxy component of the open-source vector database Milvus, affecting versions prior to 2.4.24, 2.5.21, and 2.6.5. This vulnerability allows an unauthenticated attacker to bypass all authentication mechanisms, gaining full administrative access to the Milvus cluster. Exploitation of this vulnerability enables the attacker to read, modify, or delete data, as well as perform privileged administrative operations such as managing databases or collections.
Users are advised to upgrade to Milvus versions 2.4.24, 2.5.21, or 2.6.5. If an immediate upgrade is not possible, the vulnerability can be temporarily mitigated by removing the sourceID header from all incoming requests at the gateway, API gateway, or load balancer level before they reach the Milvus Proxy.
Metrics
CVSS 4.0 Severity and Vector Strings:
CVSS 3.x Severity and Vector Strings:
No data available for CVSS Version 2.0 on this CVE.
Volerion
Assessed Nov 10, 2025CISA-ADP
Assessed Nov 12, 2025References to Advisories, Solutions, and Tools
By selecting these links, you will be leaving this site. These are references gathered from the official CVE record and are not endorsed by Volerion.
| URL | Source(s) | Tag(s) |
|---|---|---|
| https://github.com/milvus-io/milvus/pull/45379 | [email protected] | Issue TrackingVendor |
| https://github.com/milvus-io/milvus/pull/45383 | [email protected] | Issue TrackingVendor |
| https://github.com/milvus-io/milvus/pull/45391 | [email protected] | Issue TrackingVendor |
| https://github.com/milvus-io/milvus/security/advisories/GHSA-mhjq-8c7m-3f7p | [email protected] | AdvisoryRemedyVendor |
Weakness Enumeration
| CWE-ID | CWE Name | Source |
|---|---|---|
| CWE-287 | Improper Authentication | [email protected] |
Affected Products
| Product | Versions |
|---|---|
| Milvus | All versions |
CPE
Remediation
| |
Change History
3 change records found show changes
| Date | Action | Recorded By |
|---|---|---|
| Jun 17, 2026 | CVE Modified | [email protected] |
| Jun 17, 2026 | CVE Modified | CISA-ADP |
| Nov 10, 2025 | New CVE Received | [email protected] |
Volerion