Junglewise Threat Intelligence

CVE-2025-27411: REDAXO allows Arbitrary File Upload in the mediapool page

CVE-2025-27411 · Severity: low · CVSS 3.1 · Published 2025-03-05

Technologies: redaxo/source (Packagist). Vendors: Packagist.

Executive brief

REDAXO allows Arbitrary File Upload in the mediapool page

Affected products

  • Packagist redaxo/source

Related threats