CVE-2026-82665 | yaojingang GEOFlow up to 2.1.0 Image Library Cleanup ImageLibraryController.php unlink file_path path traversal (Issue 60)
A vulnerability was found in yaojingang GEOFlow up to 2.1.0. It has been declared as problematic. This vulnerability affects the function unlink of the file app/Http/Controllers/Admin/ImageLibraryController.php of the component Image Library Cleanup. The manipulation of the argument file_path results in path traversal.
This vulnerability was named CVE-2026-82665. The attack may be performed from remote. In addition, an exploit is available.
It is recommended to upgrade the affected component.VulDB Recent EntriesRead More