PT-2025-11986 · Applio · Applio

Sylwia Budzynska

+1

·

Published

2025-03-19

·

Updated

2025-03-20

·

CVE-2025-27786

CVSS v3.1

9.1

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N
Name of the Vulnerable Software and Affected Versions Applio versions 3.2.8-bugfix and prior
Description The issue concerns arbitrary file removal in the core.py component. The output tts path variable in tts.py accepts arbitrary user input, which is then passed to the run tts script function in core.py. This function checks if the path specified in output tts path exists and, if it does, proceeds to remove that path, resulting in arbitrary file removal. There are no known patches available as of the time of publication.
Recommendations For versions 3.2.8-bugfix and prior, consider disabling the run tts script function in core.py as a temporary workaround until a patch is available. Restrict access to the output tts path variable in tts.py to minimize the risk of exploitation. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Path traversal

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2025-27786

Affected Products

Applio