CVE-2025-15577

Severity CVSS v4.0:
HIGH
Type:
CWE-22 Path Traversal
Publication date:
12/02/2026
Last modified:
23/02/2026

Description

An unauthenticated attacker can exploit this vulnerability by manipulating URL to achieve arbitrary file read access.This issue affects Valmet DNA Web Tools: C2022 and older.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:valmet:dna:*:*:*:*:*:*:*:* 2022 (including)


References to Advisories, Solutions, and Tools