Files
CVEs-PoC/2025/CVE-2025-9118.md
T
2025-09-29 21:09:30 +02:00

815 B

CVE-2025-9118

Description

A path traversal vulnerability in the NPM package installation process of Google Cloud Dataform allows a remote attacker to read and write files in other customers' repositories via a maliciously crafted package.json file.

POC

Reference

No PoCs from references.

Github