Cherrling

1 exploit Active since Nov 2025
CVE-2025-56499 NOMISEC MEDIUM WORKING POC
mihomo 1.19.11 - Authenticated Arbitrary File Read via External Control Key
Incorrect access control in mihomo v1.19.11 allows authenticated attackers with low-level privileges to read arbitrary files with elevated privileges via obtaining the external control key from the config file.
CVSS 6.5