CVE-2025-22873
It was possible to improperly access the parent directory of an os.Root by opening a filename ending in "../". For examp
It was possible to improperly access the parent directory of an os.Root by opening a filename ending in "../". For example, Root.Open("../") would open the parent directory of the Root. This escape only permits opening the parent directory itself, not ancestors of the parent or files contained within the parent.
LOW · CVSS 3.8
EPSS 3e-05
Monitor
- No active-exploitation, high-EPSS, or public-exploit signals - routine patching cadence
Sigma rules0
YARA rules0