CRITICALVulnerability
CVE-2026-54414
FileRise before 3.16.0 is vulnerable to path traversal in the shared-folder upload endpoint (/api/folder/uploadToSharedFolder.php), leading to arbitrary file write and administrator account takeover. The upload filename is validated by FolderController with basename and REGEX_FILE_NAME, which permit URL-encoded sequences (the regex blocks / and \ but not %).
Properties
- severity
- CRITICAL
- score
- 9.8
- cve_id
- CVE-2026-54414
- vector
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
- published_at
- 2026-06-19T06:17:09.830
- last_modified
- 2026-08-10T12:17:17.563
Related Entities (3)
HAS_WEAKNESS (2)
→[Weakness]Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
→[Weakness]Unrestricted Upload of File with Dangerous Type
DESCRIBED_BY (1)
→[Source]NVD
Explore deeper with Ninja Signal's threat intelligence graph