Unrated severityNVD Advisory· Published Nov 18, 2025· Updated Nov 19, 2025
CVE-2025-56499
CVE-2025-56499
Description
Incorrect access control in mihomo v1.19.11 allows authenticated attackers with low-level privileges to read arbitrary files with elevated privileges via obtaining the external control key from the config file.
Affected products
2- mihomo/mihomodescription
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1News mentions
0No linked articles in our index yet.