Vite Arbitrary File Read Exploit (CVE-2025-31125)

Vite exposes content of non-allowed files using inline&import or raw import. Only apps explicitly exposing the Vite dev server to the network (using --host or server.host config option) are affected.
Exploit Platform
Product Name