Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2025-10952

Опубликовано: 25 сент. 2025
Источник: nvd
CVSS3: 5.3
CVSS2: 5
EPSS Низкий

Описание

A security flaw has been discovered in geyang ml-logger up to acf255bade5be6ad88d90735c8367b28cbe3a743. Affected by this issue is the function stream_handler of the file ml_logger/server.py of the component File Handler. Performing manipulation of the argument key results in information disclosure. The attack can be initiated remotely. The exploit has been released to the public and may be exploited. Continious delivery with rolling releases is used by this product. Therefore, no version details of affected nor updated releases are available.

EPSS

Процентиль: 17%
0.00054
Низкий

5.3 Medium

CVSS3

5 Medium

CVSS2

Дефекты

CWE-200

Связанные уязвимости

CVSS3: 5.3
github
4 месяца назад

ml-logger file handler allows reading arbitrary files

EPSS

Процентиль: 17%
0.00054
Низкий

5.3 Medium

CVSS3

5 Medium

CVSS2

Дефекты

CWE-200