ZeroHour

CVE-2025-31131

PoC
CVSS 3.1
7.5 high
EPSS
5%p92
Published
()
Modified
Description

YesWiki is a wiki system written in PHP. The squelette parameter is vulnerable to path traversal attacks, enabling read access to arbitrary files on the server. This vulnerability is fixed in 4.5.2.

Vendors
yeswiki
Products
yeswiki
Weakness
CWE-22
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.