VYPR
High severity8.5NVD Advisory· Published Jul 25, 2025· Updated Jun 17, 2026

CVE-2025-52452

CVE-2025-52452

Description

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Salesforce Tableau Server on Windows, Linux (tabdoc api - duplicate-data-source modules) allows Absolute Path Traversal. This issue affects Tableau Server: before 2025.1.3, before 2024.2.12, before 2023.3.19.

Affected products

3
  • cpe:2.3:a:tableau:tableau_server:*:*:*:*:*:*:*:*
    Range: <2023.3.19
  • Salesforce/Tableau Serverllm-fuzzy2 versions
    <2025.1.3, <2024.2.12, <2023.3.19+ 1 more
    • (no CPE)range: <2025.1.3, <2024.2.12, <2023.3.19
    • (no CPE)range: 0

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.