PT-2025-47393 · Mihomo · Mihomo

Cherrling

·

Published

2025-11-18

·

Updated

2025-11-19

·

CVE-2025-56499

CVSS v3.1

6.5

Medium

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions mihomo version 1.19.11
Description An access control issue exists in mihomo version 1.19.11. Authenticated attackers with limited privileges can read arbitrary files with higher privileges. This is achieved by obtaining an external control key from the configuration file. The vulnerable component allows unauthorized access to files.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Improper Access Control

Weakness Enumeration

Related Identifiers

CVE-2025-56499

Affected Products

Mihomo