CVE-2026-54587 | MidnightBSD mport up to 2.7.7 Bundle Read Install bundle_read_install_pkg.c mport_mkdirp path traversal

SecurityVulns

A vulnerability classified as critical was found in MidnightBSD mport up to 2.7.7. This impacts the function mport_mkdirp of the file libmport/bundle_read_install_pkg.c of the component Bundle Read Install. The manipulation results in path traversal.

This vulnerability is reported as CVE-2026-54587. The attack requires a local approach. No exploit exists.

Upgrading the affected component is advised.VulDB Recent EntriesRead More