CVE-2026-106508 | Backstage up to 1.15.3 plugin-techdocs-node path traversal

SecurityVulns

A vulnerability marked as problematic has been reported in Backstage up to 1.15.3. The impacted element is an unknown function of the component plugin-techdocs-node. This manipulation causes path traversal.

This vulnerability is tracked as CVE-2026-106508. The attack is possible to be carried out remotely. No exploit exists.

It is suggested to upgrade the affected component.VulDB Recent EntriesRead More