logo
Vulnerability feed
CONTRIBUTE

Vulnerability

warn

CVE-2025-25301

Reference to the description:

https://nvd.nist.gov/vuln/detail/CVE-2025-25301

Description:
Rembg is a tool to remove images background. In Rembg 2.0.57 and earlier, the /api/remove endpoint takes a URL query parameter that allows an image to be fetched, processed and returned. An attacker may be able to query this endpoint to view pictures hosted on the internal network of the rembg server. This issue may lead to Information Disclosure.
Last updated date:
03/07/2025
Type:
exploit
Confidence:
HIGH
Date of publishing:
03/07/2025
Reference url to background

https://securitylab.github.com/advisories/GHSL-2024-161_GHSL-2024-162_rembg/

Vulnerability FeedContributorsAboutBlog

@inTheWild

©2025

Privacy Policy