CVE-2025-31827

CVSS 3.1 Score 4.9 of 10 (medium)

Details

Published Apr 3, 2025
Updated: Apr 7, 2025
CWE ID 22

Summary

CVE-2025-31827 is a newly identified path traversal vulnerability affecting Fonto, a software product developed by vlad.olaru. The flaw, present in versions 1.2.2 and prior, allows attackers to traverse restricted directories through improper limitation of file paths. By exploiting this issue, malicious actors can potentially gain unauthorized access to sensitive files or data. This vulnerability poses a risk to system security and integrity. Users running affected Fonto versions should update to the latest patch as soon as possible to mitigate the threat.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share