CVE-2025-31125

Vite Arbitrary File Read Vulnerability (CVE-2025-31125)

abril 3, 2025

Overview Recently, NSFOCUS CERT detected that Vite issued a security bulletin to fix the Vite arbitrary file read vulnerability (CVE-2025-31125); Because the Vite development server does not strictly verify the path when processing URL requests, unauthenticated attackers can bypass path access restrictions by constructing special URLs and read arbitrary files on the target server. At […]

Search

Inscreva-se no Blog da NSFOCUS