CVE-2026-75602 | OpenListTeam OpenList up to 4.2.2 Offline Download client.go SimpleHttp.Run path traversal
A vulnerability described as problematic has been identified in OpenListTeam OpenList up to 4.2.2. This vulnerability affects the function SimpleHttp.Run of the file internal/offline_download/http/client.go of the component Offline Download. Such manipulation leads to path traversal.
This vulnerability is uniquely identified as CVE-2026-75602. The attack can be launched remotely. No exploit exists.
Upgrading the affected component is recommended.VulDB Recent EntriesRead More