← לוח פגיעויות

CVE-2026-48350

גבוהה 8.6

תיאור (מקור, אנגלית)

Animate is affected by an Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability that could result in arbitrary code execution in the context of the current user. An attacker could exploit this vulnerability to access sensitive files or directories outside the intended restrictions. Exploitation of this issue requires user interaction in that a victim must open a malicious file. Scope is changed.

מדדים

CVSS 3.1
8.6 (HIGH) מקור הציון: CNA CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H
EPSS — סבירות ניצול
0% (אחוזון 000) נכון ל-8/8/2026
CWE
CWE-22

מוצרים מושפעים

adobe: animate; apple: macos; microsoft: windows

קישורים