CVE-2025-51057

Publication date

2025-08-06 00:00:00

Family

mitre

State

PUBLISHED

Description

A local file inclusion (LFI) vulnerability in Vedo Suite version 2024.17 allows remote authenticated attackers to read arbitrary filesystem files by exploiting an unsanitized readfile() function call in /api_vedo/video/preview.