{"id":"CVE-2025-32017","aliases":["GHSA-q62r-8ppj-xvf4"],"url":"https://o3.security/vulnerability/CVE-2025-32017","summary":"Umbraco has a Management API Vulnerability to Path Traversal With Authenticated Users","details":"Umbraco is a free and open source .NET content management system. Authenticated users to the Umbraco backoffice are able to craft management API request that exploit a path traversal vulnerability to upload files into a incorrect location. The issue affects Umbraco 14+ and is patched in 14.3.4 and 15.3.1.","published":"2025-04-08T15:37:23.733Z","modified":"2026-07-15T01:49:09.529745044Z","cvss":{"score":8.8,"severity":"HIGH","vector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"},"epss":null,"cisaKev":null,"exploitsKnown":0,"affectedPackages":[{"ecosystem":"NuGet","name":"Umbraco.Cms","fixedVersion":"14.3.4"},{"ecosystem":"NuGet","name":"Umbraco.Cms","fixedVersion":"15.3.1"}],"fix":{"url":"https://github.com/umbraco/Umbraco-CMS/commit/06a2a500b358ce15b1e228391eb60bd517c6e833","label":"umbraco/Umbraco-CMS@06a2a50"},"references":[{"type":"ADVISORY","url":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2025/32xxx/CVE-2025-32017.json"},{"type":"ADVISORY","url":"https://github.com/umbraco/Umbraco-CMS/security/advisories/GHSA-q62r-8ppj-xvf4"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2025-32017"},{"type":"FIX","url":"https://github.com/umbraco/Umbraco-CMS/commit/06a2a500b358ce15b1e228391eb60bd517c6e833"},{"type":"FIX","url":"https://github.com/umbraco/Umbraco-CMS/commit/d3c1443b14b1076faf13d1bcecc42860fdf5fad8"}],"provenance":{"sources":["OSV.dev","FIRST.org (EPSS)"],"lastVerified":"2026-07-15T01:49:09.529745044Z"}}