VYPR
Unrated severityNVD Advisory· Published Oct 20, 2025· Updated Oct 20, 2025

External Control of File path vulnerability has been discovered on Openext Flipper.

CVE-2025-8048

Description

External Control of File Name or Path vulnerability in opentext Flipper allows Path Traversal. The vulnerability could allow a user to submit a stored local file path and then download the specified file from the system by requesting the stored document ID.

This issue affects Flipper: 3.1.2.

Affected products

2
  • Opentext/Flipperllm-fuzzy2 versions
    =3.1.2+ 1 more
    • (no CPE)range: =3.1.2
    • (no CPE)range: 3.1.2

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.