CVE-2025-53964
CRITICALGoldenDict <1.5.2 - Info Disclosure
Title source: llmDescription
GoldenDict 1.5.0 and 1.5.1 has an exposed dangerous method that allows reading and modifying files when a user adds a crafted dictionary and then searches for any term included in that dictionary.
Exploits (1)
Scores
CVSS v3
9.6
EPSS
0.0011
EPSS Percentile
29.1%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:L
Details
CWE
CWE-749
Status
published
Products (2)
goldendict/goldendict
1.5.0
goldendict/goldendict
1.5.1
Published
Jul 17, 2025
Tracked Since
Feb 18, 2026