Junglewise Threat Intelligence

CVE-2025-66625: Umbraco Vulnerable to Improper File Access and Credential Exposure in Dictionary Import Functionality

CVE-2025-66625 · Severity: low · CVSS 3.1 · Published 2025-12-09

Technologies: Umbraco.Cms (NuGet). Vendors: NuGet.

Executive brief

Umbraco Vulnerable to Improper File Access and Credential Exposure in Dictionary Import Functionality

Affected products

  • NuGet Umbraco.Cms

Related threats