PT-2026-5723 · Unknown · Openlist Frontend

A7Um

+2

·

Publicado

2026-02-02

·

Atualizado

2026-02-23

·

CVE-2026-25059

CVSS v3.1

8.8

Alta

VetorAV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions OpenList Frontend versions prior to 4.1.10
Description The OpenList Frontend application contains a path traversal flaw in multiple file operation handlers within the server/handles/fsmanage.go file. The application directly concatenates filename components from the req.Names variable with validated directories using stdpath.Join, allowing attackers to bypass path restrictions using ".." sequences. This enables authenticated attackers to access files belonging to other users within the same storage mount and perform unauthorized actions, including deletion, renaming, and copying. The vulnerable functions include FsRemove and FsCopy. An attacker can exploit this by injecting traversal sequences into filename components. The vulnerability allows privilege escalation within shared storage environments.
Recommendations Versions prior to 4.1.10: Upgrade to version 4.1.10 or later to resolve this issue.

Exploit

Correção

Path traversal

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2026-25059
GHSA-QMJ2-8R24-XXCQ
GO-2026-4396
SUSE-SU-2026:0403-1

Produtos afetados

Openlist Frontend