Path traversal in FileBrowser - #VU133485
Published: June 8, 2026
FileBrowser
Detailed vulnerability description
The vulnerability allows a remote user to write arbitrary files outside the intended extraction directory on a Windows system.
The vulnerability exists due to path traversal in download-as-zip and download-as-tar archive entry name handling when processing stored filenames containing Windows-style backslash separators. A remote user can create a file with a specially crafted name and cause a victim to download and extract a crafted archive to write arbitrary files outside the intended extraction directory on a Windows system.
User interaction is required to download and extract the archive on Windows.