CVE-2025-39461
CVSS 3.1 Score 7.5 of 10 (high)
Details
Summary
CVE-2025-39461 is a new vulnerability affecting the Nawawi Jamili Docket Cache system. This issue is classified as a PHP Remote File Inclusion (RFI) vulnerability, where an attacker can manipulate the filename for an include or require statement in PHP programs to load remote files. The impact of this vulnerability is significant as it allows local file inclusion, potentially granting an attacker access to sensitive information or even system execution. Affected versions of the Docket Cache system range from the unspecified n/a to 24.07.02. It is crucial for users to apply the necessary patch or upgrade as soon as possible to mitigate this risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.