VYPR
Unrated severityNVD Advisory· Published Dec 19, 2025· Updated Dec 19, 2025

CVE-2025-67442

CVE-2025-67442

Description

EVE-NG 6.4.0-13-PRO is vulnerable to Directory Traversal. The /api/export interface allows authenticated users to export lab files. This interface lacks effective input validation and filtering when processing file path parameters submitted by users.

Affected products

2
  • EVE-NG/EVE-NGdescription
  • EVE-NG/EVE-NGllm-create
    Range: = 6.4.0-13-PRO

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

1

News mentions

0

No linked articles in our index yet.