CVE-2026-49290 | byrongamatos slopsmith up to 0.2.9-alpha.4 TOC File lib/psarc.py ZipFile.extractall path traversal (GHSA-8wr9-348x-xwmr)
A vulnerability, which was classified as critical, was found in byrongamatos slopsmith up to 0.2.9-alpha.4. This impacts the function ZipFile.extractall in the library lib/psarc.py of the component TOC File Handler. Such manipulation leads to path traversal.
This vulnerability is listed as CVE-2026-49290. The attack may be performed from remote. There is no available exploit.
You should upgrade the affected component.VulDB Recent EntriesRead More