Skip to main content

CVE-2025-13262

7.3
HIGHCVSS v3.1 Base Score
0.21%
LOW RiskEPSS (43rd percentile)

A vulnerability was determined in lsfusion platform up to 6.1. Affected by this vulnerability is the function UploadFileRequestHandler of the file platform/web-client/src/main/java/lsfusion/http/controller/file/UploadFileRequestHandler.java. Executing manipulation of the argument sid can lead to path traversal. The attack can be executed remotely. The exploit has been publicly disclosed and may be utilized.

Published: 11/17/2025
Modified: 12/1/2025
Back to CVE Lookup

Vulnerability Summary

CVSS v3 Score

7.3HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L

EPSS Score (Exploitation Probability)

0.21%LOW Exploitation Risk
43rd percentile

This vulnerability has a 0.21% probability of being exploited in the next 30 days, ranking higher than 43% of all scored CVEs.

Related Vulnerabilities