Security Advisory

CVE-2025-2961

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2025-03-30 21:31:05
Last updated 2025-03-31 15:46:30
Assigner VulDB
State PUBLISHED

Description

A vulnerability classified as problematic was found in opensolon up to 3.1.0. This vulnerability affects the function render_mav of the file /aa of the component org.noear.solon.core.handle.RenderManager. The manipulation of the argument template with the input ../org/example/HelloApp.class leads to path traversal: ../filedir. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used.