PerfreeBlog v4.0.11 has an arbitrary file read vulnerability in the validThemeFilePath function
References
| Link | Resource |
|---|---|
| http://perfreeblog.com | Broken Link |
| https://github.com/dengxmenglihua/cve/blob/main/PerfreeBlog/File%20Read/Arbitrary%20File%20Read%20Vulnerability%20in%20PerfreeBlog%20System.md | Exploit Third Party Advisory |
| https://perfree.org.cn/ | Product |
Configurations
History
No history.
Information
Published : 2025-10-24 18:15
Updated : 2025-10-27 17:53
NVD link : CVE-2025-60729
Mitre link : CVE-2025-60729
CVE.ORG link : CVE-2025-60729
JSON object : View
Products Affected
perfree
- perfreeblog
CWE
CWE-126
Buffer Over-read
