{"id":"CVE-2025-11058","aliases":["PYSEC-2026-2058"],"url":"https://o3.security/vulnerability/CVE-2025-11058","summary":"xml2rfc has an arbitrary file read vulnerability","details":"### Impact\nWhen generating PDF files, this vulnerability allows an attacker to read arbitrary files from the filesystem by injecting malicious link element into the XML.\n\n### Workarounds\nTest untrusted input with `link` elements with `rel=\"attachment\"` before processing.\n\n### Credits\nThis vulnerability was reported by Mohamed Ouad from [Doyensec](https://doyensec.com/).","published":"2025-08-26T17:45:11Z","modified":"2026-07-07T17:56:37.537341252Z","cvss":null,"epss":null,"cisaKev":null,"exploitsKnown":null,"affectedPackages":[{"ecosystem":"PyPI","name":"xml2rfc","fixedVersion":"3.30.1"}],"fix":{"url":"https://github.com/ietf-tools/xml2rfc/commit/f2b245bc0aeeac0667c8f74e976c466c5991f0e4","label":"ietf-tools/xml2rfc@f2b245b"},"references":[{"type":"WEB","url":"https://github.com/ietf-tools/xml2rfc/security/advisories/GHSA-cfmv-h8fx-85m7"},{"type":"WEB","url":"https://github.com/ietf-tools/xml2rfc/commit/f2b245bc0aeeac0667c8f74e976c466c5991f0e4"},{"type":"PACKAGE","url":"https://github.com/ietf-tools/xml2rfc"}],"provenance":{"sources":["OSV.dev","FIRST.org (EPSS)"],"lastVerified":"2026-07-07T17:56:37.537341252Z"}}