Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Tue, 24 Mar 2026 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 23 Mar 2026 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Codnloc
Codnloc phptransformer |
|
| CPEs | cpe:2.3:a:codnloc:phptransformer:2016.9:*:*:*:*:*:*:* | |
| Vendors & Products |
Codnloc
Codnloc phptransformer |
Mon, 23 Mar 2026 10:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Phptransformer
Phptransformer phptransformer |
|
| Vendors & Products |
Phptransformer
Phptransformer phptransformer |
Sat, 21 Mar 2026 15:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | phpTransformer 2016.9 contains a directory traversal vulnerability that allows unauthenticated attackers to access arbitrary files by manipulating the path parameter. Attackers can send requests to the jQueryFileUploadmaster server endpoint with traversal sequences ../../../../../../ to list and retrieve files outside the intended directory. | |
| Title | phpTransformer 2016.9 Directory Traversal via jQueryFileUpload | |
| Weaknesses | CWE-22 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: VulnCheck
Published:
Updated: 2026-03-24T14:23:10.480Z
Reserved: 2026-03-21T15:25:46.856Z
Link: CVE-2019-25579
Updated: 2026-03-24T14:22:15.438Z
Status : Analyzed
Published: 2026-03-21T16:16:01.923
Modified: 2026-03-23T17:04:46.443
Link: CVE-2019-25579
No data.
OpenCVE Enrichment
Updated: 2026-04-22T03:45:06Z