CVE-2025-69820

Directory Traversal vulnerability in Beam beta9 v.0.1.521 allows a remote attacker to obtain sensitive information via the joinCleanPath function.
Configurations

No configuration.

History

28 Jan 2026, 15:16

Type Values Removed Values Added
Summary (en) Directory Traversal vulnerability in Beam beta9 v.0.1.552 allows a remote attacker to obtain sensitive information via the joinCleanPath function (en) Directory Traversal vulnerability in Beam beta9 v.0.1.521 allows a remote attacker to obtain sensitive information via the joinCleanPath function.

25 Jan 2026, 07:16

Type Values Removed Values Added
References
  • () https://github.com/beam-cloud/beta9/blob/c1cd75e813cf7d53e916157d920099e89ef45caa/pkg/abstractions/volume/multipart.go#L45 -

22 Jan 2026, 17:16

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 6.0
CWE CWE-22

22 Jan 2026, 16:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-01-22 16:16

Updated : 2026-01-28 15:16


NVD link : CVE-2025-69820

Mitre link : CVE-2025-69820

CVE.ORG link : CVE-2025-69820


JSON object : View

Products Affected

No product.

CWE
CWE-22

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')