Impact
Rhymix versions before 2.1.31 contain an insecure direct object reference flaw that permits an attacker to request arbitrary files on the host by appending additional query variables to a URL. The flaw can expose sensitive system and configuration files to an unauthenticated user, resulting in a confidentiality breach. This weakness is classified as CWE‑425.
Affected Systems
The affected product is Rhymix, an open‑source content management framework. Deployments running any Rhymix release older than 2.1.31 are vulnerable. Updates through 2.1.31 and later contain a fix that removes the insecure direct access path and validates request parameters.
Risk and Exploitability
The CVSS score of 7.4 classifies the issue as high severity. The EPSS score is reported as less than 1 percent, indicating a low probability of exploitation in the current threat landscape. The vulnerability is not listed in the CISA KEV catalog. Because the flaw can be triggered by any user who can craft a web request, it is potentially exploitable from the internet without authentication, giving the attacker broad reach.
OpenCVE Enrichment