← Volver al buscador de CVEs

CVE-2026-19326

Descripción

A vulnerability was detected in Jevon-Zhong Ai-doctor 0.0.1. This vulnerability affects the function deleteImage of the file ai-doctor-server/src/filemanagement/filemanagement.service.ts. Performing a manipulation of the argument imagePath results in path traversal. The attack must be initiated from a local position. The project was informed of the problem early through an issue report but has not responded yet.

CVSS 4.4EPSS 0.13699999999999998%Riesgo 0.45
Ver fuente
Publicación
2026-08-09 03:16:56
Última modificación
2026-08-10 16:19:29
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:L