Unknown · Phoca Commander · CVE-2026-66493
**Name of the Vulnerable Software and Affected Versions**
Phoca Commander versions 1.0.0 through 6.1.3
**Description**
Improper limitation of paths for delete, copy, and move actions leads to path traversal, a condition where an attacker can access files and directories outside the intended folder by manipulating file paths.
**Recommendations**
Update Phoca Commander to a version newer than 6.1.3.