CVE-2025-31131
01.04.2025, 15:16
YesWiki is a wiki system written in PHP. The squelette parameter is vulnerable to path traversal attacks, enabling read access to arbitrary files on the server. This vulnerability is fixed in 4.5.2.
Vendor | Product | Version |
---|---|---|
yeswiki | yeswiki | 𝑥 < 4.5.2 |
𝑥
= Vulnerable software versions