DirectorySecurity AdvisoriesPricing
/
Sign in
Security Advisories

CVE-2025-11965

Published

Last updated

NVD

https://nvd.nist.gov/vuln/detail/CVE-2025-11965

Severity

7.5

High

CVSS V3

Description

In Eclipse Vert.x versions [4.0.0, 4.5.21] and [5.0.0, 5.0.4], a StaticHandler configuration for restricting access to hidden files fails to restrict access to hidden directories, allowing unauthorized users to retrieve files within them (e.g. '.git/config').

References

  • https://nvd.nist.gov/vuln/detail/CVE-2025-11965

Affected packages


The trusted source for open source

Talk to an expert
© 2025 Chainguard. All Rights Reserved.
PrivacyTerms

Product

Chainguard ContainersChainguard LibrariesChainguard VMsIntegrationsPricing