CVE-2025-6772 – Eosphoros-AI Db-GPT Path Traversal Vulnerability
CVE ID : CVE-2025-6772
Published : June 27, 2025, 7:15 p.m. | 43 minutes ago
Description : A vulnerability was found in eosphoros-ai db-gpt up to 0.7.2. It has been classified as critical. Affected is the function import_flow of the file /api/v2/serve/awel/flow/import. The manipulation of the argument File leads to path traversal. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.
Severity: 7.3 | HIGH
Visit the link for more details, such as CVSS details, affected products, timeline, and more…