Vite Arbitrary File Read Vulnerability (CVE-2025-31125)
2 Articles
2 Articles


Vite Arbitrary File Read Vulnerability (CVE-2025-31125)
NSFOCUS has detected an arbitrary file read vulnerability in Vite (CVE-2025-31125). Attackers can bypass path restrictions and read server files by constructing special URLs. This vulnerability affects multiple versions of Vite development servers, especially applications exposed to the Internet. The official has fixed the vulnerability and released a new version. Users are advised to upgrade as soon as possible to strengthen protection.
Coverage Details
Bias Distribution
- There is no tracked Bias information for the sources covering this story.
To view factuality data please Upgrade to Premium
Ownership
To view ownership data please Upgrade to Vantage