CVE-2026-25057General(markusproject / markus)

MEDIUMCVSS 9.1 · CRITICAL

Exploit discussion active in current signal (1 latest mentions)

Immediate actions

  • Patch markusproject markus systems immediately
  • Hunt for exploitation attempts and persistence artifacts
  • Increase monitoring for publicly documented tradecraft

Recommended action window: High priority (within 72h)

NVD description

MarkUs is a web application for the submission and grading of student assignments. Prior to 2.9.1, instructors are able to upload a zip file to create an assignment from an exported configuration (courses/<:course_id>/assignments/upload_config_files). The uploaded zip file entry names are used to create paths to write files to disk without checking these paths. This vulnerability is fixed in 2.9.1.

4.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-23

Priority

MEDIUM

Exploitation

NONE

PoC

YES

Patch

AVAILABLE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • markus

Threat summary

  • Public PoC and exploit tooling are both present
  • Patch or workaround signal is available
  • 6 mentions across 4 observed days
  • Momentum state: stable

What's happening

  • Exploit tool or code specified in 2 signals
  • PoC mentioned or linked in 2 signals
  • Patch or workaround mentioned in 2 signals
  • Technical details provided in 4 signals
  • General: 2 classified signals
  • Peaked 3d ago at 3 mentions (2026-02-09); latest day: 1
  • 6 total mentions across 4 days

Affected systems

Products
markus

Deep dive

Activity timeline6 mentions / 4d
01223Mentions · 2026-02-09: 3Mentions · 2026-02-10: 1Mentions · 2026-09-15: 1Mentions · 2026-09-16: 1PoC Mentioned / Linked · 2026-09-15: 1PoC Mentioned / Linked · 2026-09-16: 1Exploit Tool / Code · 2026-09-15: 1Exploit Tool / Code · 2026-09-16: 1Patch / Workaround · 2026-02-09: 1Patch / Workaround · 2026-02-10: 1Technical Details · 2026-02-09: 1Technical Details · 2026-02-10: 1Technical Details · 2026-09-15: 1Technical Details · 2026-09-16: 102-0902-1009-1509-16
Signal classification3 categories
General
233.3%
Patch
233.3%
Exploit
233.3%
Referenced assets6 URLs
Classification over time
DateTotalLabels
2026-02-093
General2Patch1
2026-02-101
Patch1
2026-09-151
Exploit1
2026-09-161
Exploit1
Full discourse6 posts
  • Rıdvan Yağlı@ridvanyagli
    Exploit

    MarkUs ≤ 2.9.0 sürümlerini etkileyen CVE-2026-25057 için PoC yayınlandı. Authenticated Zip Slip -> Arbitrary File Write -> RCE zinciri gösteriliyor. Kötü amaçlı Assignment Configuration ZIP'i ile extraction dizini dışına dosya yazılabiliyor; uygun koşullarda RCE elde edilebiliyor. PoC: https://github.com/ustr/CVE-2026-25057

    Post summary

    A proof-of-concept exploit for CVE-2026-25057 affecting MarkUs versions up to 2.9.0 has been released, demonstrating an authenticated zip slip vulnerability that can lead to arbitrary file write and remote code execution.

    03061704
    2.4K followersView on X
  • CVE@CVEnew
    General

    CVE-2026-25057 MarkUs is a web application for the submission and grading of student assignments. Prior to 2.9.1, instructors are able to upload a zip file to create an assignment f… https://www.cve.org/CVERecord?id=CVE-2026-25057

    Post summary

    The text references CVE-2026-25057 in a vague way, noting a zip upload feature in MarkUs before version 2.9.1, but it provides no concrete details about exploitation, patching, or technical aspects.

    00010169
    56.5K followersView on X
  • cybrmonk@cybr_monk
    Exploit

    MarkUs Critical Zip-Path Traversal (CVE-2026-25057) Lets Attackers Plant Files on Your Server, Exploit Code Is Live on GitHub https://cybrmonk.com/blog/markus-critical-zip-path-traversal-cve-2026-25057-lets-attackers-plant-files-on-your-server-exploit-code-is-live-on-gith #cybersecurity #threatintelligence https://t.co/pWcr9OCyYA

    Post summary

    The tweet reports a critical Zip‑Path Traversal vulnerability (CVE‑2026‑25057) in MarkUs and notes that exploit code is publicly available on GitHub, with no mention of a patch or active exploitation.

    0000061
    47 followersView on X
  • PulsePatch.io@pulsepatchio
    Patch

    MarkUs is affected by a Zip Slip vulnerability (CVE-2026-25057) allowing RCE via config upload. Patching addresses this critical issue. #MarkUs #RCE #infosec https://www.pulsepatch.io/posts/cve-2026-25057-markus-zip-slip-rce

    Post summary

    CVE-2026-25057 is a Zip Slip flaw in MarkUs that permits RCE through config uploads; the issue is mitigated by applying the available patch.

    0000040
    1 followersView on X
  • CVEFind.com@CveFindCom
    Patch

    [CVE-2026-25057: CRITICAL] Attention users of MarkUs web application! Ensure you update to version 2.9.1 to fix a critical vulnerability allowing malicious paths to be written to disk when uploading zip file...#cve,CVE-2026-25057,#cybersecurity https://cvefind.com/CVE-2026-25057

    Post summary

    The post warns of a critical MarkUs vulnerability that allows path writes via zip uploads and directs users to patch to version 2.9.1.

    0000072
    583 followersView on X
  • The Hacker Wire@TheHackerWire
    General

    🔴 CVE-2026-25057 - Critical MarkUs is a web application for the submission and grading of student assignments. Prior to 2.9.1, instructors are able to upload a zip file to create an assignment from an exported confi... https://www.thehackerwire.com/vulnerability/CVE-2026-25057/ https://t.co/df1wyuQBAg

    Post summary

    The post alerts to a critical CVE in MarkUs, but provides no detailed technical, exploit, or patch information.

    0000048
    112 followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
Appmarkusprojectmarkus---

Explore more