Unpoller · Unpoller · CVE-2026-36851
**Name of the Vulnerable Software and Affected Versions**
UnPoller version 2.33.0
**Description**
A path traversal issue exists in the password field, which allows an attacker to read arbitrary files and perform network exfiltration. Path traversal is a technique used to access files and directories that are stored outside the web root folder by manipulating variables that reference files with dot-dot-slash (../) sequences.
**Recommendations**
At the moment, there is no information about a newer version that contains a fix for this vulnerability.