In Content Management versions 20.4- 25.3 authenticated...
Moderate severity
Unreviewed
Published
Sep 11, 2025
to the GitHub Advisory Database
•
Updated Sep 11, 2025
Description
Published by the National Vulnerability Database
Sep 11, 2025
Published to the GitHub Advisory Database
Sep 11, 2025
Last updated
Sep 11, 2025
In Content Management versions 20.4- 25.3 authenticated attackers may exploit a complex cache poisoning technique to download unprotected files from the server if the filenames are known.
References