Vulnerability Description
yimioa before v2024.07.04 was discovered to contain an information disclosure vulnerability via the component /resources/application.yml.
CVSS Score
4.2
MEDIUM
CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:U/C:L/I:L/A:L
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| R1Bbit | Yimioa | < 2024-07-04 |
Related Weaknesses (CWE)
References
- https://gitee.com/r1bbit/yimioa/issues/IBI7LRExploitIssue Tracking
FAQ
What is CVE-2025-25586?
CVE-2025-25586 is a vulnerability with a CVSS score of 4.2 (MEDIUM). yimioa before v2024.07.04 was discovered to contain an information disclosure vulnerability via the component /resources/application.yml.
How severe is CVE-2025-25586?
CVE-2025-25586 has been rated MEDIUM with a CVSS base score of 4.2/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2025-25586?
Check the references section above for vendor advisories and patch information. Affected products include: R1Bbit Yimioa.