CVE-2026-19326 | Jevon-Zhong Ai-doctor 0.0.1 filemanagement.service.ts deleteImage imagePath path traversal
A vulnerability has been found in Jevon-Zhong Ai-doctor 0.0.1 and classified as critical. This vulnerability affects the function deleteImage of the file ai-doctor-server/src/filemanagement/filemanagement.service.ts. Performing a manipulation of the argument imagePath results in path traversal.
This vulnerability is cataloged as CVE-2026-19326. The attack must be initiated from a local position. Furthermore, there is an exploit available.
The project was informed of the problem early through an issue report but has not responded yet.VulDB Recent EntriesRead More