CNNVD-202509-3824 Information

CNNVD ID

CNNVD-202509-3824

CVE-2025-56816

  • CNNVD Published: 2025-09-24

Description (Chinese)

datart是running-elephant开源的一个数据可视化开放平台。 datart 1.0.0-rc.3版本存在安全漏洞,该漏洞源于配置文件处理不当,可能导致路径遍历和远程代码执行。

Description (English)

Datart is a data visualizing open-source platform. There is a security loophole in version 1.0.0-rc.3, which stems from the mishandling of the configuration file, which may lead to routing and remote code execution.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

running-elephant

Published

2025-09-24

Last Modified

2026-02-24

References

https://github.com/running-elephant/datart https://github.com/xiaoxiaoranxxx/CVE-2025-56815 https://access.redhat.com/security/cve/cve-2025-56816

Share on: