An interface that accepts file uploads from authenticated...
High severity
Unreviewed
Published
Sep 12, 2026
to the GitHub Advisory Database
•
Updated Sep 12, 2026
Description
Published by the National Vulnerability Database
Sep 11, 2026
Published to the GitHub Advisory Database
Sep 12, 2026
Last updated
Sep 12, 2026
An interface that accepts file uploads from authenticated users extracts the contents of uploaded archives without validating that extracted file paths remain within the intended destination directory. This allows an authenticated attacker to craft an archive whose entries traverse outside the destination directory, causing the extraction process to write files to arbitrary locations with the privileges of that process. This could allow an attacker to inject fabricated records into the system's stored data or tamper with application configuration.
References