PT-2026-52189 · Rapid7 · Insightconnect Compression Plugin

Published

2026-06-25

·

Updated

2026-06-25

·

CVE-2026-8662

CVSS v3.1

3.3

Low

VectorAV:N/AC:H/PR:H/UI:N/S:U/C:N/I:L/A:L
Path Traversal vulnerability in the create archive function of Rapid7 InsightConnect Compression Plugin on Linux allows authenticated attackers to write to unintended file paths via crafted filename input. The impact is limited to file corruption as content cannot be controlled by the attacker.

Fix

Path traversal

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-8662

Affected Products

Insightconnect Compression Plugin