Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2025-25295

25
FAUCET Score

CVE-2025-25295 describes a path traversal vulnerability in Label Studio SDK versions prior to 1.0.10, affecting Label Studio versions before 1.16.0. This flaw allows an authenticated attacker to read arbitrary files from the server's filesystem by crafting tasks with malicious image paths during VOC, COCO, or YOLO project exports. The vulnerability has a high CVSS score of 8.7, indicating a significant risk of sensitive data exposure due to its network-based attack vector and low attack complexity. While no active exploitation, public exploit code, or significant community discussion has been observed, the potential for unauthorized file reads necessitates prompt patching.

Impacted Technologies

VendorProductVersion(s)CPE
HumanSignalLabel-Studio
< 1.0.10CNA affected

CVSS Data

CVSS version used by this source: 4.0

8.7HIGH

CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X

Attack Vector
NETWORK
Attack Complexity
LOW
Attack Requirements
NONE
Privileges Required
NONE
User Interaction
NONE
VS Confidentiality
HIGH
VS Integrity
NONE
VS Availability
NONE
SS Confidentiality
NONE
SS Integrity
NONE
SS Availability
NONE
Exploit Maturity
NOT_DEFINED
CvssVersion
4.0

Exploit Intelligence

EPSS Score
0.74%
Probability of exploitation in next 30 days
EPSS Percentile
50.8%
Percentile rank of EPSS score among Peer Group
As of 2026-07-27
Model: v2026.06.15
This CVE's current EPSS score of 0.0074 is in the 27th percentile among its peer group of 51,551 CVEs.

Social Chatter

The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.4 GitHub mentions.

Media Mentions

No media coverage found for this CVE.

The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Patch Available

Vendor Patches (1)

pippatch availablevia ghsa
Product: label-studio-sdkFixed in: 1.0.10

Vendor Advisories (1)

pipGHSA-rgv9-w7jp-m23ghigh

Label Studio has a Path Traversal Vulnerability via image Field

Feb 14, 2025

References

github.com / HumanSignal/label-studio-sdk/commit/4a9715c6b0b619371e89c09ea8d1c86ce5c880df
github.com / HumanSignal/label-studio/security/advisories/GHSA-rgv9-w7jp-m23g