CVE-2026-101036 | FLB-Music FLB-Music-Player 1.1.8/1.1.9/1.2.0/1.2.1 createParsedTrack.ts path.join path traversal
A vulnerability has been found in FLB-Music FLB-Music-Player 1.1.8/1.1.9/1.2.0/1.2.1 and classified as problematic. This impacts the function path.join of the file /src/main/core/createParsedTrack.ts. The manipulation leads to path traversal.
This vulnerability is listed as CVE-2026-101036. The attack must be carried out locally. In addition, an exploit is available.
The vendor was contacted early about this disclosure but did not respond in any way.VulDB Recent EntriesRead More