Link following in WeGIA - CVE-2026-31894
Published: April 23, 2026
WeGIA
Detailed vulnerability description
The vulnerability allows a remote user to disclose sensitive information.
The vulnerability exists due to improper link resolution before file access in the loadBackupDB() backup restore function when processing a crafted tar.gz backup archive. A remote user can upload a crafted archive containing a symbolic link to disclose sensitive information.
The issue was introduced in version 3.6.5, and exploitation can expose any file readable by the www-data user through an error message during MySQL import.