CVE-2025-68116
HIGHFileRise < 2.7.1 - Stored Cross-Site Scripting via SVG/HTML File Upload
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2025-68116. PoCs published by x0root.
AI-analyzed exploit summary This repository provides a detailed technical analysis of CVE-2025-68116, a stored XSS vulnerability in FileRise (< 2.7.1) via SVG uploads. It includes root cause analysis, proof-of-concept payloads, and a timeline of failed fixes leading to the final patch in v2.7.1.
Description
FileRise is a self-hosted web file manager / WebDAV server. Versions prior to 2.7.1 are vulnerable to Stored Cross-Site Scripting (XSS) due to unsafe handling of browser-renderable user uploads when served through the sharing and download endpoints. An attacker who can get a crafted SVG (primary) or HTML (secondary) file stored in a FileRise instance can cause JavaScript execution when a victim opens a generated share link (and in some cases via the direct download endpoint). This impacts share links (`/api/file/share.php`) and direct file access / download path (`/api/file/download.php`), depending on browser/content-type behavior. Version 2.7.1 fixes the issue.
Exploits (1)
This repository provides a detailed technical analysis of CVE-2025-68116, a stored XSS vulnerability in FileRise (< 2.7.1) via SVG uploads. It includes root cause analysis, proof-of-concept payloads, and a timeline of failed fixes leading to the final patch in v2.7.1.
References (1)
Scores
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:H/I:H/A:L