Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2025-27837


An issue was discovered in Artifex Ghostscript before 10.05.0. Access to arbitrary files can occur through a truncated path with invalid UTF-8 characters, for base/gp_mswin.c and base/winrtsup.cpp.


Published

2025-03-25T21:15:43.250

Last Modified

2025-04-01T16:35:15.650

Status

Analyzed

Source

[email protected]

Severity

CVSSv3.1: 9.8 (CRITICAL)

Weaknesses
  • Type: Secondary
    CWE-22

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application artifex ghostscript < 10.05.0 Yes

References