
CVE-2025-70849 Arbitrary File Upload in podinfo thru 6.9.0 allows unauthenticated attackers to upload arbitrary files via crafted POST request to the /store endpoint. The applicatio… https://www.cve.org/CVERecord?id=CVE-2025-70849
Post summary
The text announces CVE-2025-70849 as an unauthenticated arbitrary file upload vulnerability in podinfo up to 6.9.0, enabling file uploads via a crafted POST to the /store endpoint, without mention of PoC, exploit code, patch, or active exploitation.

