Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2025-52996


File Browser provides a file managing interface within a specified directory and it can be used to upload, delete, preview, rename and edit files. In versions 2.32.0 and prior, the implementation of password protected links is error-prone, resulting in potential unprotected sharing of a file through a direct download link. This link can either be shared unknowingly by a user or discovered from various locations such as the browser history or the log of a proxy server used. At time of publication, no known patched versions are available.


Published

2025-06-30T20:15:25.690

Last Modified

2025-08-04T18:15:35.177

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 3.1 (LOW)

Weaknesses
  • Type: Secondary
    CWE-305

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application filebrowser filebrowser ≤ 2.32.0 Yes

References