Fonto – Custom Web Fonts Manager, CVE-2025-31827
- CVE, Research URL
- Application
- Published on
- Apr 03, 2025
- Research Description
- Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in vlad.olaru Fonto allows Path Traversal. This issue affects Fonto: from n/a through 1.2.2.
- Affected versions
-
max 1.2.2.
- Status
-
vulnerable
| Previous vulnerability researches |
|---|
| Fonto – Custom Web Fonts Manager (CVE-2024-8920) , Oct 18, 2024 |
| Fonto – Custom Web Fonts Manager (CVE-2025-31827) , Apr 05, 2025 |