CVE-2025-54386CWE-22CWE-30

Traefik's Client Plugin is Vulnerable to Path Traversal, Arbitrary File Overwrites and Remote Code Execution

High · published August 1, 2025

CVSS v4.0
7.3
EPSS
1%
Percentile
62.5
In the wild
Unconfirmed
What it is

⚡ A sneaky path traversal vulnerability in Traefik could let an attacker overwrite any file they choose! 🛠️ Think of it like a delivery driver who misreads an address and ends up dropping packages in the wrong location—this exploit allows a malicious actor to manipulate file paths and deliver their own dangerous files straight to your system. An attacker could potentially gain full remote code execution, escalate privileges, or even cause denial of service, making this a high-stakes game! They could overwrite critical files, leading to chaos on your server. Imagine the disruption if your website goes down or worse!

Put simply

Think of it like a delivery driver who misreads an address and ends up dropping packages in the wrong location—this exploit allows a malicious actor to manipulate file paths and deliver their own dangerous files straight to your system. This vulnerability lets attackers exploit the WASM plugin installation mechanism by supplying a crafted ZIP archive containing '../' sequences, enabling them to traverse directories and overwrite files outside the intended area.

What to do

An attacker could potentially gain full remote code execution, escalate privileges, or even cause denial of service, making this a high-stakes game! They could overwrite critical files, leading to chaos on your server. Imagine the disruption if your website goes down or worse! To protect yourself, upgrade to Traefik versions 2.11.28, 3.4.5, or 3.5.0 immediately. Additionally, review your installed plugins to ensure they haven't been tampered with, and consider implementing stricter validation for uploaded files. You've got this! Follow these steps and you’ll secure your Traefik setup in no time! 🛡️

The record
Technical detail
CVSS v4.0
7.3 · HIGH
Vector
CVSS:4.0/AV:N/AC:H/AT:P/PR:H/UI:P/VC:H/VI:H/VA:H/SC:L/SI:L/SA:L
EPSS
0.01067 · 62.5th percentile
Weaknesses
CWE-22 · Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal'); CWE-30 · Path Traversal: '\dir\..\filename'
Published
2025-08-01T23:32Z
EPSS history
Timeline
  • 01 AUG 23:32Z
    Traefik's Client Plugin is Vulnerable to Path Traversal, Arbitrary File Overwrites and Remote Code Execution
    cvelistv5