CVE-2025-67818: Path Traversal
An issue was discovered in Weaviate OSS before 1.33.4. An attacker with access to insert data into the database can craft an entry name with an absolute path (e.g., /etc/...) or use parent directory traversal (../../..) to escape the restore root when a backup is restored, potentially creating or overwriting files in arbitrary locations within the application's privilege scope.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-67818?
The severity of CVE-2025-67818 is classified as high due to its potential for unauthorized file access and privilege escalation.
How do I fix CVE-2025-67818?
To fix CVE-2025-67818, upgrade to Weaviate version 1.33.4 or higher.
What types of attacks can CVE-2025-67818 facilitate?
CVE-2025-67818 can facilitate directory traversal attacks, allowing an attacker to escape the restricted file system and access sensitive files.
Which versions of Weaviate are affected by CVE-2025-67818?
Versions of Weaviate prior to 1.33.4, including 1.32.x and 1.31.x, are affected by CVE-2025-67818.
Is data integrity affected by CVE-2025-67818?
Yes, CVE-2025-67818 can compromise data integrity by allowing unauthorized modifications or access to database backups.