VYPR
Medium severity6.4NVD Advisory· Published Dec 19, 2025· Updated Jun 17, 2026

CVE-2025-67845

CVE-2025-67845

Description

A Directory Traversal vulnerability in the Static Asset Proxy Endpoint in Mintlify Platform before 2025-11-15 allows remote attackers to inject arbitrary web script or HTML via a crafted URL containing path traversal sequences.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

4
  • Mintlify/Mintlify2 versions
    cpe:2.3:a:mintlify:mintlify:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:mintlify:mintlify:*:*:*:*:*:*:*:*range: <2025-11-15
    • (no CPE)range: <2025-11-15
  • Mintlify/Mintlify Platformllm-fuzzy2 versions
    <2025-11-15+ 1 more
    • (no CPE)range: <2025-11-15
    • (no CPE)range: 0

Patches

Vulnerability mechanics

References

5

News mentions

0

No linked articles in our index yet.