CVE-2025-31131
EUVD-2025-933301.04.2025, 15:16
YesWiki is a wiki system written in PHP. The squelette parameter is vulnerable to path traversal attacks, enabling read access to arbitrary files on the server. This vulnerability is fixed in 4.5.2.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| yeswiki | yeswiki | 𝑥 < 4.5.2 |
𝑥
= Vulnerable software versions