Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2025-64712

Опубликовано: 04 фев. 2026
Источник: nvd
CVSS3: 9.8
EPSS Низкий

Описание

The unstructured library provides open-source components for ingesting and pre-processing images and text documents, such as PDFs, HTML, Word docs, and many more. Prior to version 0.18.18, a path traversal vulnerability in the partition_msg function allows an attacker to write or overwrite arbitrary files on the filesystem when processing malicious MSG files with attachments. This issue has been patched in version 0.18.18.

EPSS

Процентиль: 20%
0.00063
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-22

Связанные уязвимости

CVSS3: 9.8
github
4 дня назад

Unstructured has Path Traversal via Malicious MSG Attachment that Allows Arbitrary File Write

EPSS

Процентиль: 20%
0.00063
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-22