CVE-2026-64826 | rConfig up to 8.2.12 download_export filename path traversal

SecurityVulns

A vulnerability labeled as problematic has been found in rConfig up to 8.2.12. Affected by this issue is the function download_export. The manipulation of the argument filename results in path traversal.

This vulnerability is known as CVE-2026-64826. It is possible to launch the attack remotely. No exploit is available.

The affected component should be upgraded.VulDB Recent EntriesRead More