CVE-2025-31131

CVSS 3.1 Score 8.6 of 10 (high)

Details

Published Apr 1, 2025
CWE ID 22

Summary

CVE-2025-31131 is a vulnerability affecting YesWiki, a PHP-based wiki system. The issue lies in the squelette parameter, which is susceptible to path traversal attacks. Successful exploitation enables attackers to gain read access to arbitrary files on the server. This security flaw has been resolved in version 4.5.2.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share