CVE-2026-100520

CVE-2026-100520 published: Laranode versions before 1.2.1 contain a path traversal vulnerability in the POST /filemanager/upload-file endpoint that allows authenticated users to write arbitrary files outside their home directory. Attackers can supply directory traversal sequences in ...

View full NVD advisory → ← Back to CVE watch