CVE-2026-104851 | filesystem_spec up to 2026.5.x ReferenceFileSystem reference.py special elements in template engine

SecurityVulns

A vulnerability was found in filesystem_spec up to 2026.5.x. It has been declared as critical. The affected element is the function _process_references1._render_jinja/_process_templates/_process_gen of the file fsspec/implementations/reference.py of the component ReferenceFileSystem. Executing a manipulation can lead to improper neutralization of special elements used in a template engine.

This vulnerability appears as CVE-2026-104851. The attack may be performed from remote. There is no available exploit.

It is recommended to upgrade the affected component.VulDB Recent EntriesRead More