CVE-2025-48479
LOWDescription
FreeScout is a free self-hosted help desk and shared mailbox. Prior to version 1.8.180, the laravel-translation-manager package does not correctly validate user input, enabling the deletion of any directory, given sufficient access rights. This issue has been patched in version 1.8.180.
Is your site exposed to CVE-2025-48479?
Run a free security scan — no signup, results in seconds.
CVSS v3.1 Score
Weakness Type (CWE)
Affected Products
| Vendor | Product |
|---|---|
| freescout | freescout |
References
Frequently Asked Questions
What is CVE-2025-48479? +
How severe is CVE-2025-48479? +
What products are affected by CVE-2025-48479? +
How do I check if I'm vulnerable to CVE-2025-48479? +
Related Vulnerabilities
Our payment integration with GiroCheckout did not properly validate payment status responses. An attacker could use a successful payment status …
Unexpected Status Code or Return Value vulnerability in ninenines gun (gun_http module) allows a malicious HTTP server to force the …
Our payment integration with Oppwa-based payment methods did not properly validate payment status responses. An attacker could use a successful …
Our payment integration with Computop-based payment methods did not properly validate payment status responses. An attacker could use a successful …
Fides is an open-source privacy engineering platform. From 2.75.0 to before 2.83.2, Fides deployments that enable both subject identity verification …
Our payment integration with Mollie did not properly validate payment status responses. An attacker could use a successful payment status …