CVE-2026-69160 | OpenListTeam OpenList up to 4.2.3 Share Creation sharing.go strings.HasPrefix requested_path path traversal

SecurityVulns

A vulnerability was found in OpenListTeam OpenList up to 4.2.3. It has been rated as problematic. This impacts the function strings.HasPrefix of the file server/handles/sharing.go of the component Share Creation. The manipulation of the argument requested_path leads to path traversal.

This vulnerability is referenced as CVE-2026-69160. Remote exploitation of the attack is possible. No exploit is available.

Upgrading the affected component is advised.VulDB Recent EntriesRead More