PT-2025-25609 · Unknown · Steel Browser
Rpie9O
·
Published
2025-06-17
·
Updated
2025-07-02
·
CVE-2025-6152
CVSS v3.1
9.8
Critical
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
Steel Browser versions up to 0.1.3
Description
A critical vulnerability was found in Steel Browser, affecting the
handleFileUpload function of the file api/src/modules/files/files.routes.ts. The manipulation of the filename argument leads to path traversal. It is possible to initiate the attack remotely.Recommendations
For Steel Browser versions up to 0.1.3, apply the patch named 7ba93a10000fb77ee01731478ef40551a27bd5b9 to fix this issue. As a temporary workaround, consider restricting access to the
handleFileUpload function until the patch is applied. Avoid using the filename argument in the affected API endpoint until the issue is resolved.Exploit
Fix
Path traversal
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Steel Browser