CVE-2026-9506 | Webkul Bagisto 2.4.1 ImageCacheController filename path traversal (CIVN-2026-0292)

SecurityVulns

A vulnerability was found in Webkul Bagisto 2.4.1. It has been rated as critical. This affects an unknown part of the component ImageCacheController. The manipulation of the argument filename leads to path traversal.

This vulnerability is listed as CVE-2026-9506. The attack may be initiated remotely. There is no available exploit.VulDB Recent EntriesRead More