PT-2025-11986 · Applio · Applio
Sylwia Budzynska
+1
·
Published
2025-03-19
·
Updated
2025-03-20
·
CVE-2025-27786
CVSS v3.1
9.1
Critical
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N |
Name of the Vulnerable Software and Affected Versions
Applio versions 3.2.8-bugfix and prior
Description
The issue concerns arbitrary file removal in the core.py component. The
output tts path variable in tts.py accepts arbitrary user input, which is then passed to the run tts script function in core.py. This function checks if the path specified in output tts path exists and, if it does, proceeds to remove that path, resulting in arbitrary file removal. There are no known patches available as of the time of publication.Recommendations
For versions 3.2.8-bugfix and prior, consider disabling the
run tts script function in core.py as a temporary workaround until a patch is available. Restrict access to the output tts path variable in tts.py to minimize the risk of exploitation. At the moment, there is no information about a newer version that contains a fix for this vulnerability.Exploit
Path traversal
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Applio