Console is a network used to control Gorilla Tag mods' users and other users on the network. Prior to version 2.8.0, a path traversal vulnerability exists where complicated combinations of backslashes and periods can be used to escape the Gorilla Tag path and write to unwanted directories. This issue has been patched in version 2.8.0.
Metrics
Affected Vendors & Products
References
History
Wed, 26 Nov 2025 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 25 Nov 2025 23:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Console is a network used to control Gorilla Tag mods' users and other users on the network. Prior to version 2.8.0, a path traversal vulnerability exists where complicated combinations of backslashes and periods can be used to escape the Gorilla Tag path and write to unwanted directories. This issue has been patched in version 2.8.0. | |
| Title | Console is vulnerable to path traversal regarding custom assets | |
| Weaknesses | CWE-22 | |
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: GitHub_M
Published: 2025-11-25T22:54:24.363Z
Updated: 2025-11-26T16:09:37.490Z
Reserved: 2025-11-18T16:14:56.693Z
Link: CVE-2025-65952
Updated: 2025-11-26T16:09:34.553Z
Status : Received
Published: 2025-11-25T23:15:48.097
Modified: 2025-11-25T23:15:48.097
Link: CVE-2025-65952
No data.