← Back to browse · API

CVE-2025-14306

Severity
CRITICAL
CVSS
10.0
EPSS
0.0105
Risk score
40.37
CISA KEV
No
PoC
Yes
Published
2025-12-09
Modified
2026-01-28
First seen
2026-08-07
Aliases
EUVD-2025-201886, GHSA-J8R2-47RX-QHW4
Products
Robocode Project:Robocode 1.9.3.6, linux, ubuntu
Sources
euvd EUVD-2025-201886
packetstorm 58e1079f3c93ea28e9ba5358|CVE-2025-14306

Description

A directory traversal vulnerability exists in the CacheCleaner component of Robocode version 1.9.3.6. The recursivelyDelete method fails to properly sanitize file paths, allowing attackers to traverse directories and delete arbitrary files on the system. This vulnerability can be exploited by submitting specially crafted inputs that manipulate the file path, leading to potential unauthorized file deletions. https://robo-code.blogspot.com/

References