CVE-2025-48927: TeleMessage TM SGNL Initialization of a Resource with an
TeleMessage TM SGNL Initialization of a Resource with an Insecure Default Vulnerability. TeleMessage TM SGNL contains an initialization of a resource with an insecure default vulnerability. This vulnerability relies on how the Spring Boot Actuator is configured with an exposed heap dump endpoint at a /heapdump URI.
- CISA KEV-listed (remediation due 2025-07-22)
- EPSS 9.5% (93.0% percentile)