First published: Sat May 10 2025(Updated: )
A vulnerability was found in vector4wang spring-boot-quick up to 20250422. It has been rated as critical. This issue affects the function ResponseEntity of the file /spring-boot-quick-master/quick-img2txt/src/main/java/com/quick/controller/Img2TxtController.java of the component quick-img2txt. The manipulation leads to path traversal. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.
Credit: cna@vuldb.com
Affected Software | Affected Version | How to fix |
---|---|---|
vector4wang spring-boot-quick | <=20250422 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-4511 has been rated as critical, indicating a severe impact on affected systems.
CVE-2025-4511 affects vector4wang spring-boot-quick up to version 20250422.
To fix CVE-2025-4511, upgrade to a version of vector4wang spring-boot-quick that is beyond 20250422.
CVE-2025-4511 impacts the ResponseEntity function in Img2TxtController.java of the spring-boot-quick project.
CVE-2025-4511 is categorized as a critical vulnerability affecting web application components.