Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2025-66415

Опубликовано: 01 дек. 2025
Источник: redhat
CVSS3: 6.5

Описание

fastify-reply-from is a Fastify plugin to forward the current HTTP request to another server. Prior to 12.5.0, by crafting a malicious URL, an attacker could access routes that are not allowed, even though the reply.from is defined for specific routes in @fastify/reply-from. This vulnerability is fixed in 12.5.0.

A flaw was found in fastify-reply-from. This vulnerability allows an attacker to bypass intended route restrictions and gain unauthorized access to specific application routes, potentially exposing sensitive information or functionality, via crafting a malicious Uniform Resource Locator (URL).

Отчет

This vulnerability is rated Moderate for Red Hat because it allows an attacker to bypass intended route restrictions in applications utilizing the fastify-reply-from plugin by crafting a malicious URL. This could lead to unauthorized access to specific application routes, potentially exposing sensitive information or functionality.

Меры по смягчению последствий

To mitigate the risk associated with this vulnerability, Red Hat recommends restricting network access to applications utilizing fastify-reply-from to trusted networks only. Additionally, ensure that any routes intended to be inaccessible via forwarding have robust, independent access control mechanisms in place, separate from the fastify-reply-from plugin's internal logic. If the fastify-reply-from functionality is not essential, consider disabling or removing the plugin to eliminate the attack surface.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat OpenShift AI (RHOAI)rhoai/odh-dashboard-rhel8Fix deferred
Red Hat OpenShift AI (RHOAI)rhoai/odh-dashboard-rhel9Fix deferred
Red Hat OpenShift AI (RHOAI)rhoai/odh-mod-arch-gen-ai-rhel9Fix deferred
Red Hat OpenShift AI (RHOAI)rhoai/odh-mod-arch-model-registry-rhel9Fix deferred
Red Hat OpenShift Dev Spacesdevspaces/dashboard-rhel9Fix deferred

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-441
https://bugzilla.redhat.com/show_bug.cgi?id=2418149fastify-reply-from: fastify-reply-from: Unauthorized route access via malicious URL

6.5 Medium

CVSS3

Связанные уязвимости

CVSS3: 5.4
nvd
4 месяца назад

fastify-reply-from is a Fastify plugin to forward the current HTTP request to another server. Prior to 12.5.0, by crafting a malicious URL, an attacker could access routes that are not allowed, even though the reply.from is defined for specific routes in @fastify/reply-from. This vulnerability is fixed in 12.5.0.

github
4 месяца назад

fastify-reply-from affected by bypass of reply forwarding

6.5 Medium

CVSS3