Path Traversal Vulnerability in Jeecgboot by Jeecg
CVE-2025-61189
6.3MEDIUM
What is CVE-2025-61189?
Jeecgboot versions up to 3.8.2 are vulnerable to a path traversal issue that can be exploited via the /sys/comment/addFile endpoint. This flaw permits malicious users to upload files with allowed extensions directly to the system directory /opt, circumventing the intended /opt/upFiles location specified by the web server. Such exploitation could lead to unauthorized access and manipulation of sensitive files within the system, jeopardizing the integrity and security of the server.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
