CVE-2026-93988 | Webkul QloApps up to 1.7.0 admin/ajax.php getEmailHTML email path traversal

SecurityVulns

A vulnerability categorized as problematic has been discovered in Webkul QloApps up to 1.7.0. This vulnerability affects the function getEmailHTML of the file admin/ajax.php. The manipulation of the argument email results in path traversal.

This vulnerability is reported as CVE-2026-93988. The attack can be launched remotely. No exploit exists.VulDB Recent EntriesRead More