CVE-2026-49133 | Typemill up to 2.23.x Query Parameter Storage::getFile path traversal

SecurityVulns

A vulnerability has been found in Typemill up to 2.23.x and classified as critical. The impacted element is the function Storage::getFile of the component Query Parameter Handler. The manipulation leads to path traversal.

This vulnerability is uniquely identified as CVE-2026-49133. The attack is possible to be carried out remotely. No exploit exists.

The affected component should be upgraded.VulDB Recent EntriesRead More