CVE-2026-64826 | rConfig up to 8.2.12 download_export filename path traversal
A vulnerability labeled as problematic has been found in rConfig up to 8.2.12. Affected by this issue is the function download_export. The manipulation of the argument filename results in path traversal.
This vulnerability is known as CVE-2026-64826. It is possible to launch the attack remotely. No exploit is available.
The affected component should be upgraded.VulDB Recent EntriesRead More