PT-2025-42481 · Unknown · Shazwazza Smidge

Asust9

·

Published

2025-10-16

·

Updated

2025-10-20

·

CVE-2025-11842

CVSS v2.0

6.5

Medium

VectorAV:N/AC:L/Au:S/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions Shazwazza Smidge versions through 4.5.1
Description A security issue exists in Shazwazza Smidge related to the Bundle Handler component. Manipulation of the Version argument can lead to path traversal. Remote exploitation is possible.
Recommendations Upgrade to version 4.6.0 to resolve this issue.

Fix

Path traversal

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2025-11842
GHSA-9RVM-P3QM-F4VV

Affected Products

Shazwazza Smidge