CVE-2025-67845: Path Traversal
A Directory Traversal vulnerability in the Static Asset Proxy Endpoint in Mintlify Platform before 2025-11-15 allows remote attackers to inject arbitrary web script or HTML via a crafted URL containing path traversal sequences.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-67845?
CVE-2025-67845 is considered a high severity vulnerability due to the potential for remote code execution and data manipulation.
How do I fix CVE-2025-67845?
To fix CVE-2025-67845, update the Mintlify Platform to a version released after 2025-11-15.
What systems are affected by CVE-2025-67845?
CVE-2025-67845 affects all versions of the Mintlify Platform prior to 2025-11-15.
What are the potential impacts of CVE-2025-67845?
The potential impacts of CVE-2025-67845 include unauthorized access and execution of arbitrary scripts or HTML on affected systems.
Is CVE-2025-67845 remotely exploitable?
Yes, CVE-2025-67845 is remotely exploitable, allowing attackers to inject malicious content via crafted URLs.