CVE-2025-66687

HIGH

Doom Launcher 3.8.1.0 - Path Traversal

Title source: llm
STIX 2.1

Description

Doom Launcher 3.8.1.0 is vulnerable to Directory Traversal due to missing file path validation during the extraction of game files

Scores

CVSS v3 7.5
EPSS 0.0065
EPSS Percentile 46.3%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

CISA SSVC

Vulnrichment
Exploitation poc
Automatable yes
Technical Impact partial

Details

CWE
CWE-22
Status published
Published Mar 16, 2026
Tracked Since Mar 16, 2026