CVE-2026-82673 | ash-project ash_admin 0.13.7/1.3.0 File Upload client_name path traversal

SecurityVulns

A vulnerability categorized as problematic has been discovered in ash-project ash_admin 0.13.7/1.3.0. The affected element is the function AshAdmin.Components.Resource.Form.consume_file_uploads of the component File Upload. Executing a manipulation of the argument client_name can lead to path traversal.

This vulnerability is handled as CVE-2026-82673. The attack can be executed remotely. There is not any exploit available.

It is advisable to upgrade the affected component.VulDB Recent EntriesRead More