U.S. flag   An official website of the United States government
Dot gov

Official websites use .gov
A .gov website belongs to an official government organization in the United States.

Https

Secure .gov websites use HTTPS
A lock (Dot gov) or https:// means you've safely connected to the .gov website. Share sensitive information only on official, secure websites.

Vulnerability Change Records for CVE-2025-1584

Change History

New CVE Received from VulDB 2/23/2025 8:15:09 AM

Action Type Old Value New Value
Added Description

								
							
							
						
A vulnerability classified as problematic was found in opensolon Solon up to 3.0.8. This vulnerability affects unknown code of the file solon-projects/solon-web/solon-web-staticfiles/src/main/java/org/noear/solon/web/staticfiles/StaticMappings.java. The manipulation leads to path traversal: '../filedir'. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. Upgrading to version 3.0.9 is able to address this issue. The name of the patch is f46e47fd1f8455b9467d7ead3cdb0509115b2ef1. It is recommended to upgrade the affected component.
Added CVSS V4.0

								
							
							
						
AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Added CVSS V3.1

								
							
							
						
AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
Added CVSS V2

								
							
							
						
(AV:N/AC:L/Au:S/C:P/I:N/A:N)
Added CWE

								
							
							
						
CWE-23
Added CWE

								
							
							
						
CWE-24
Added Reference

								
							
							
						
https://github.com/opensolon/solon/commit/f46e47fd1f8455b9467d7ead3cdb0509115b2ef1
Added Reference

								
							
							
						
https://github.com/opensolon/solon/issues/332
Added Reference

								
							
							
						
https://github.com/opensolon/solon/issues/332#issue-2866229828
Added Reference

								
							
							
						
https://github.com/opensolon/solon/issues/332#issuecomment-2674330700
Added Reference

								
							
							
						
https://vuldb.com/?ctiid.296560
Added Reference

								
							
							
						
https://vuldb.com/?id.296560
Added Reference

								
							
							
						
https://vuldb.com/?submit.504454