High severity8.8NVD Advisory· Published Jul 21, 2025· Updated Jun 17, 2026
CVE-2025-50151
CVE-2025-50151
Description
File access paths in configuration files uploaded by users with administrator access are not validated.
This issue affects Apache Jena version up to 5.4.0.
Users are recommended to upgrade to version 5.5.0, which does not allow arbitrary configuration upload.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected packages
Versions sourced from the GitHub Security Advisory.
| Package | Affected versions | Patched versions |
|---|---|---|
org.apache.jena:jenaMaven | < 5.5.0 | 5.5.0 |
Affected products
3Patches
Vulnerability mechanics
References
4- github.com/advisories/GHSA-xg9p-p463-3qjpghsaADVISORY
- lists.apache.org/thread/12gks5z40gh9bszn1xk8mz34gz586xssnvdIssue TrackingVendor AdvisoryWEB
- nvd.nist.gov/vuln/detail/CVE-2025-50151ghsaADVISORY
- www.openwall.com/lists/oss-security/2025/07/21/2nvdWEB
News mentions
0No linked articles in our index yet.