Project Subscriptions
No data.
| Source | ID | Title |
|---|---|---|
Github GHSA |
GHSA-m3c2-496v-cw3v | Fiber has an Arbitrary File Read in Static Middleware on Windows |
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Tue, 24 Feb 2026 22:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 24 Feb 2026 21:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Fiber is an Express inspired web framework written in Go. A Path Traversal (CWE-22) vulnerability in Fiber allows a remote attacker to bypass the static middleware sanitizer and read arbitrary files on the server file system on Windows. This affects Fiber v3 through version 3.0.0. This has been patched in Fiber v3 version 3.1.0. | |
| Title | Fiber has an Arbitrary File Read in Static Middleware on Windows | |
| Weaknesses | CWE-22 | |
| References |
| |
| Metrics |
cvssV4_0
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: GitHub_M
Published:
Updated: 2026-02-24T21:39:11.118Z
Reserved: 2026-02-06T21:08:39.130Z
Link: CVE-2026-25891
Updated: 2026-02-24T21:39:05.876Z
Status : Awaiting Analysis
Published: 2026-02-24T22:16:31.440
Modified: 2026-02-24T22:39:03.967
Link: CVE-2026-25891
No data.
OpenCVE Enrichment
No data.
Github GHSA