Skip to content
Critical Path Traversal Vulnerability in Unstructured.io Library

Critical Path Traversal Vulnerability in Unstructured.io Library

First seen 13 Feb 2026, 16:10 UTC • •

Article Content

Browse articles
ThreatCluster AI
ThreatCluster •March 12, 2026 at 16:10 UTC

A critical vulnerability in the Unstructured.io library has been identified, allowing for arbitrary file writes due to a path traversal flaw. This issue affects the Unstructured.io ETL product, which processes unstructured data formats like PDFs and emails. The vulnerability was revealed by Cyera on February 13, 2026, and is associated with CVE-2025-64712, published on February 4, 2026.

Start a free Starter trial for enhanced analysis

Ask AI about this cluster

Updated 210d ago How this analysis works

Timeline

2026-02-04
CVE-2025-64712 published
2026-02-13
Cyera reveals critical vulnerability in Unstructured.io

More articles in this cluster (1)

Following this threat?

Track Cyera and CVE-2025-64712 in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.

Free account · no card needed