Feed/CVE-2025-23410
CVE-2025-23410CRITICALCVSS 9.8

CVE-2025-23410

Published Mar 4, 2025·Updated Jun 17, 2026

NVD Description

When uploading organism or sequence data via the web interface, GMOD Apollo will unzip and inspect the files and will not check for path traversal in supported archive types.

CVSS Vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

References

View on NVD Search GitHub Search Google

Get alerted for CVEs like this

Register your stack and get notified within minutes when a matching CVE drops.

Start monitoring free