← Back

CVE-2026-33589

nvd nist
Published: May 7, 2026Modified: May 7, 2026

JSON object

Loading...
8.2
Vector
CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:N/VC:H/VI:N/VA:N/SC:H/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Show more
CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:N/VC:H/VI:N/VA:N/SC:H/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:XShow less
Source: a6d3dc9e-0591-4a13-bce7-0f5b31ff6158 (Secondary)

Description

Lack of user input validation in the file upload functionality of Open Notebook v1.8.3 allows the application user to access local files content from the docker container via path traversal.

Affected (1)

1 product
Open Notebook
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
Before 1.8.4

References (1)

Source: a6d3dc9e-0591-4a13-bce7-0f5b31ff6158
MitigationVendor Advisory

Timeline

No history available yet.