CVE-2025-11233P3MEDIUMCVSS 6.3≥ 1.87.0, < 1.89.02025-10-01
CVE-2025-11233 [MEDIUM] CWE-22 CVE-2025-11233: Starting from Rust 1.87.0 and before Rust 1.89.0, the tier 3 Cygwin target (`x86_64-pc-cygwin`) didn
Starting from Rust 1.87.0 and before Rust 1.89.0, the tier 3 Cygwin target (`x86_64-pc-cygwin`) didn't correctly handle path separators, causing the standard library's Path API to ignore path components separated by backslashes. Due to this, programs compiled for Cygwin that validate paths could misbehave, potentially allowing path traversal attacks
nvd