CVE-2025-22873
ADVISORY - nistSummary
It was possible to improperly access the parent directory of an os.Root by opening a filename ending in "../". For example, Root.Open("../") would open the parent directory of the Root. This escape only permits opening the parent directory itself, not ancestors of the parent or files contained within the parent.
NIST
2
CVSS SCORE
3.8lowAlpine
-
Debian
-
CVSS SCORE
N/AlowUbuntu
-
CVSS SCORE
N/AmediumGoLang
-
Amazon
-
CVSS SCORE
N/AmediumBitnami
BIT-golang-2025-22873
2.0
CVSS SCORE
3.8lowminimos
MINI-2m2f-8jq7-m5mq
-
minimos
MINI-2wx3-wxxq-qjgf
-
minimos
MINI-2x93-7hm5-q3jm
-
minimos
MINI-33jg-h863-hrw2
-
minimos
MINI-377r-g742-3r79
-
minimos
MINI-4mmx-wgqp-23h8
-
minimos
MINI-55xf-9qvj-xfjw
-
minimos
MINI-59q7-7hj8-53vf
-
minimos
MINI-6rmj-qw52-qg2p
-
minimos
MINI-75cq-p5ww-c389
-
minimos
MINI-7f3m-286h-mgh2
-
minimos
MINI-7h6j-p8wp-r573
-
minimos
MINI-7j6m-w2h4-x8gx
-
minimos
MINI-84qm-rp8x-w38c
-
minimos
MINI-85w2-2f9p-27q8
-
minimos
MINI-8pjh-vjpg-vjmc
-
minimos
MINI-fwv9-6jrr-g9vr
-
minimos
MINI-gjwv-r7qr-gc52
-
minimos
MINI-gph3-3g3w-47q4
-
minimos
MINI-h73v-7wp7-6247
-
minimos
MINI-hj4c-c97q-x8qx
-
minimos
MINI-jpj3-xxf2-j6cf
-
minimos
MINI-m5mh-c5jf-2rm5
-
minimos
MINI-mp9h-6q3f-7p99
-
minimos
MINI-pm5j-32f3-jj55
-
minimos
MINI-q5wg-7mh4-wc7r
-
minimos
MINI-qvw4-42wj-m3q4
-
minimos
MINI-rjfr-686m-xrgr
-
minimos
MINI-rm29-7rm2-mwv2
-
minimos
MINI-rmx2-v3pq-4fq6
-
minimos
MINI-w555-jc2m-f2vh
-
minimos
MINI-w6c4-pxvh-fjgg
-
minimos
MINI-w7c4-3fvj-2xfj
-
minimos
MINI-wpp3-4v6q-p47v
-
minimos
MINI-wpwq-wc6v-m3qr
-
minimos
MINI-x4pf-j2cj-c5w9
-
minimos
MINI-xh7j-fhwm-x98r
-
minimos
MINI-xhx5-7m88-p7mj
-