📦 Restaurant Brands International Assistant

by Rbi

🔍 What is Restaurant Brands International Assistant?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2025-62645

CRITICAL CVSS 9.9 Oct 17, 2025

This vulnerability allows remote authenticated attackers to obtain administrative tokens via a GraphQL mutation in the Restaurant Brands International assistant platform. Attackers can gain full platf...

CVE-2025-62650

HIGH CVSS 8.3 Oct 17, 2025

The Restaurant Brands International assistant platform uses client-side authentication for diagnostic screens, allowing attackers to bypass authentication and access sensitive diagnostic functions. Th...

CVE-2025-62649

MEDIUM CVSS 5.8 Oct 17, 2025

This vulnerability allows attackers to submit unauthorized equipment orders by bypassing server-side authentication checks. The Restaurant Brands International (RBI) assistant platform relies on clien...

CVE-2025-62644

MEDIUM CVSS 5.0 Oct 17, 2025

The RBI assistant platform's Global Store Directory improperly shares personal information among authenticated users, allowing one authenticated user to access another user's personal data. This affec...

CVE-2025-62647

MEDIUM CVSS 5.0 Oct 17, 2025

The Restaurant Brands International assistant platform allows attackers to obtain a JWT token that can generate signed AWS upload URLs for any store's path. This enables unauthorized file uploads to A...

CVE-2025-62648

MEDIUM CVSS 6.4 Oct 17, 2025

This vulnerability in the Restaurant Brands International (RBI) assistant platform allows remote attackers to manipulate Drive Thru speaker audio volume without authentication. It affects RBI's restau...