In Min before 1.31.0, local files are not correctly treated as unique security origins, which allows them to improperly request cross-origin resources. For example, a local file may request other local files through an XML document.
{ "versions": [ { "introduced": "0" }, { "last_affected": "1.29.0" } ] }
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2024-25677.json"