CVE-2025-40889
A path traversal vulnerability was discovered in the Time Machine functionality due to missing validation of two input p
A path traversal vulnerability was discovered in the Time Machine functionality due to missing validation of two input parameters. An authenticated user with limited privileges, by issuing a specifically-crafted request, can potentially alter the structure and content of files in the /data folder, and/or affect their availability.
HIGH · CVSS 8.1
EPSS 0.00095
Schedule remediation
- CVSS base score ≥ 7.0
Sigma rules0
YARA rules0