CVE-2025-52995

HIGH8.0EPSS 0.50%

File Browser vulnerable to command execution allowlist bypass in github.com/filebrowser/filebrowser

Published: 6/30/2025Modified: 3/3/2026
Also known as:GHSA-w7qc-6grj-w7r8GO-2025-3795

Description

File Browser vulnerable to command execution allowlist bypass in github.com/filebrowser/filebrowser

Affected packages (4)

CVSS scores

SourceVersionSeverityVector
osvCVSS 3.1HIGH8.0CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:C/C:H/I:H/A:H

References (7)