CVE-2026-54675 | FreePBX up to 16.0.9/17.0.4 Sound Language Upload/Conversion path traversal

SecurityVulns

A vulnerability marked as critical has been reported in FreePBX up to 16.0.9/17.0.4. The impacted element is an unknown function of the component Sound Language Upload/Conversion. This manipulation causes path traversal.

This vulnerability is handled as CVE-2026-54675. The attack can be initiated remotely. There is not any exploit available.

It is suggested to upgrade the affected component.VulDB Recent EntriesRead More