VDB

GCVE-VVD-MAGEIA-2025-35

GCVE-VVD-MAGEIA-2025-35
Advisory Published
Vulnetix · Advisory published April 5, 2025
Path traversal leading to arbitrary .ttf file write. (CVE-2024-12425) URL fetching can be used to exfiltrate arbitrary INI file values and environment variables. (CVE-2024-12426)

Affected Products

VendorProductVersionsPlatforms
Mageiapython-browser-cookie30 (affected), 0.20.1-1.mga9 (unaffected)
Mageiapython-socksio0 (affected), 1.0.0-1.1.mga9 (unaffected)
Mageiapython-httpx0 (affected), 0.23.0-1.1.mga9 (unaffected)
Mageiapython-aiomcache0 (affected), 0.8.2-1.mga9 (unaffected)
Mageiapython-aiosqlite0 (affected), 0.20.0-1.mga9 (unaffected)
Mageiapython-aiocache0 (affected), 0.12.3-1.mga9 (unaffected)
Mageiapython-arsenic0 (affected), 21.8-1.mga9 (unaffected)
Mageiapython-maturin0 (affected), 1.2.3-1.mga9 (unaffected)
Mageiapython-mitmproxy-wireguard0 (affected), 0.1.23-1.mga9 (unaffected)
Mageiapython3-loguru0 (affected), 0.5.3-1.mga9 (unaffected)
Mageiawapiti0 (affected), 3.1.4-1.mga9 (unaffected)
Mageialibreoffice0 (affected), 24.2.7.2-1.mga9 (unaffected), 0 (affected), 24.2.7.2-1.mga9 (unaffected)

Browse GCVE Records

100 records in the GCVE database · Updated April 16, 2026

No matching records found.

Explore Further

Investigate this vulnerability in the interactive console or download the raw GCVE record.

$ Console Community · 100/wk Open console ›