Логотип exploitDog
bind:CVE-2025-6278
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2025-6278

Количество 2

Количество 2

nvd логотип

CVE-2025-6278

8 месяцев назад

A vulnerability classified as critical was found in Upsonic up to 0.55.6. This vulnerability affects the function os.path.join of the file markdown/server.py. The manipulation of the argument file.filename leads to path traversal. The exploit has been disclosed to the public and may be used.

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-8jf4-fcjr-68c2

8 месяцев назад

Upsonic is vulnerable to Path Traversal attack through its os.path.join function

CVSS3: 5.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2025-6278

A vulnerability classified as critical was found in Upsonic up to 0.55.6. This vulnerability affects the function os.path.join of the file markdown/server.py. The manipulation of the argument file.filename leads to path traversal. The exploit has been disclosed to the public and may be used.

CVSS3: 5.5
0%
Низкий
8 месяцев назад
github логотип
GHSA-8jf4-fcjr-68c2

Upsonic is vulnerable to Path Traversal attack through its os.path.join function

CVSS3: 5.5
0%
Низкий
8 месяцев назад

Уязвимостей на страницу