OpenBullet2 0.3.2 Path Traversal via Wordlist Endpoint
CVE-2026-25559

8.7HIGH

Key Information:

Vendor

Openbullet

Vendor
CVE Published:
8 June 2026

Badges

๐Ÿ‘พ Exploit Exists

What is CVE-2026-25559?

OpenBullet2 through version 0.3.2 contains a path traversal vulnerability in the wordlist endpoint that allows authenticated attackers to perform arbitrary file read, write, and delete operations by supplying unsanitized absolute paths to the upload handler and wordlist functions. Attackers can chain the file write and delete primitives to achieve remote code execution by manipulating critical system files such as /etc/passwd, with full system impact since the application runs as root by default.

Affected Version(s)

openbullet2 0 <= 0.3.2

References

CVSS V4

Score:
8.7
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • ๐ŸŸก

    Public PoC available

  • ๐Ÿ‘พ

    Exploit known to exist

  • Vulnerability published

  • Vulnerability Reserved

Credit

Maksim Rogov
VulnCheck
.