CVE-2025-31134: FreshRSS vulnerable to directory enumeration via ext.php
FreshRSS is a self-hosted RSS feed aggregator. Prior to version 1.26.2, an attacker can gain additional information about the server by checking if certain directories exist. An attacker can, for example, check if older PHP versions are installed or if certain software is installed on the server and potentially use that information to further attack the server. Version 1.26.2 contains a patch for the issue.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2025-31134?
CVE-2025-31134 is classified as a medium severity vulnerability.
How do I fix CVE-2025-31134?
To fix CVE-2025-31134, upgrade FreshRSS to version 1.26.2 or later.
What type of information can be disclosed through CVE-2025-31134?
CVE-2025-31134 allows attackers to discover additional information about the server, such as the existence of certain directories and potentially sensitive software versions.
Can CVE-2025-31134 be exploited without authentication?
Yes, CVE-2025-31134 can be exploited by unauthenticated attackers.
Which versions of FreshRSS are affected by CVE-2025-31134?
FreshRSS versions prior to 1.26.2 are affected by CVE-2025-31134.