CVE-2025-26525

Insufficient sanitizing in the TeX notation filter resulted in an arbitrary file read risk on sites where pdfTeX is available (such as those with TeX Live installed).

Scoring

Severity
HIGH
CVSS base score
8.6
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:N/A:N
EPSS probability
0.43%
CWE
CWE-552
Published
2025-02-24
Last modified
2026-03-13

Affected products

Weakness type

Markdown version · Browse all CVEs