← back
CVE-2025-0638

Routinator crashes when illegal characters are present in manifest file names

CVSS 7.5 HIGHEPSS 0.5%CWE-1286
The initial code parsing the manifest did not check the content of the file names yet later code assumed that it was checked and panicked when encountering illegal characters, resulting in a crash of Routinator.
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Affected products
NLnet Labs · Routinator

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →