CVE-2026-75594 | Getkirby Kirby up to 4.9.4/5.5.1 Media src/Cms/Media.php KirbyCmsMedia::thumb path traversal
A vulnerability has been found in Getkirby Kirby up to 4.9.4/5.5.1 and classified as critical. This vulnerability affects the function KirbyCmsMedia::thumb of the file src/Cms/Media.php of the component Media Handler. This manipulation causes path traversal.
This vulnerability is tracked as CVE-2026-75594. The attack is possible to be carried out remotely. No exploit exists.
The affected component should be upgraded.VulDB Recent EntriesRead More