CVE-2025-53075

Severity
4.6MEDIUM
EPSS
0.1%
top 74.05%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJun 30
Latest updateFeb 24

Description

Improper Input Validation vulnerability in Samsung Open Source rLottie allows Path Traversal.This issue affects rLottie: V0.2.

CVSS vector

CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:A/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N

Affected Packages3 packages

Debianrlottie< 0.1+dfsg-2+deb11u1+3

🔴Vulnerability Details

3
CVEList
CVE-2025-53075: Improper Input Validation vulnerability in Samsung Open Source rLottie allows Path Traversal2025-06-30
GHSA
GHSA-2m7v-8fgj-5354: Improper Input Validation vulnerability in Samsung Open Source rLottie allows Path Traversal2025-06-30
OSV
CVE-2025-53075: Improper Input Validation vulnerability in Samsung Open Source rLottie allows Path Traversal2025-06-30

📋Vendor Advisories

2
Ubuntu
rlottie vulnerabilities2026-02-24
Debian
CVE-2025-53075: rlottie - Improper Input Validation vulnerability in Samsung Open Source rLottie allows Pa...2025
CVE-2025-53075 (MEDIUM CVSS 4.6) | Improper Input Validation vulnerabi | cvebase.io