CVE-2025-11965
EUVD-2025-3559322.10.2025, 15:15
In Eclipse Vert.x versions [4.0.0, 4.5.21] and [5.0.0, 5.0.4], a StaticHandler configuration for restricting access to hidden files fails to restrict access to hidden directories, allowing unauthorized users to retrieve files within them (e.g. '.git/config').Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| eclipse | vert.x | 4.0.0 ≤ 𝑥 < 4.5.22 |
| eclipse | vert.x | 5.0.0 ≤ 𝑥 < 5.0.5 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration