PT-2026-104663 · Undefined · Undefined

·

CVE-2026-105174

·

Published

2026-10-05

·

Updated

2026-10-05

CVSS v3.1

5.4

Medium

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:L
A vulnerability has been found in Gerapy up to 0.9.13. This vulnerability affects the function project create of the file gerapy/server/core/views.py of the component Project Management. The manipulation of the argument project name leads to path traversal. Remote exploitation of the attack is possible. The exploit has been disclosed to the public and may be used. The identifier of the patch is 6e481078cfba6388a67ca2d9792288405019ba3e. Applying a patch is the recommended action to fix this issue.

Exploit

Fix

Path traversal

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-105174

Affected Products

Undefined