wildfirechat CVE Vulnerabilities & CVE List (1)

Products (CPE): — CVEs: 1

wildfirechat vulnerability overview

This page aggregates publicly disclosed CVE and security risk information related to wildfirechat, with CVSS, EPSS, publication dates, and vulnerability intelligence data to help assess potential risk and remediation priority.

Vulnerability distribution trend (last 24 months)

Showing 11 of 1 CVEs
«« First « Prev Page 1 / 1 Next »
CVE Summary Source Max CVSS EPSS % Published Updated
CVE-2025-66480 Wildfire IM is an instant messaging and real-time audio/video solution. Prior to 1.4.3, a critical vulnerability exists in the im-server component related to the file upload functionality found in com.xiaoleilu.loServer.action.UploadFileAction. The application exposes an endpoint (/fs) that handles multipart file uploads but fails to properly sanitize the filename provided by the user. Specifically, the writeFileUploadData method directly concatenates the configured storage directory with the fi [email protected] 9.8 0.25% 2026-02-02 2026-03-03
«« First « Prev Page 1 / 1 Next »
cvelogic Threat Intelligence