CVE-2025-13425 - Denial of Service in OSV-SCALIBR

CVE-2025-13425 - Denial of Service in OSV-SCALIBR

CVE ID : CVE-2025-13425 Published : Nov. 20, 2025, 3:30 p.m. | 55 minutes ago Description : A bug in the filesystem traversal fallback path causes fs/diriterate/diriterate.go:Next() to overindex an empty slice when ReadDir returns nil for an empty directory, resulting in a panic (index out of range) and an application crash (denial of service) in OSV-SCALIBR. Severity: 1.9 | LOW Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVE Details

Severity
LOW
Published
Nov. 20, 2025
Impact: denial of service