Input validation error in ONE - CVE-2026-58075
Published: August 4, 2026
Vulnerability details
The vulnerability allows a remote attacker to disclose arbitrary files from the host.
The vulnerability exists due to an unspecified flaw in the file access functionality when handling network requests. A remote attacker can send a crafted request to disclose arbitrary files from the host.
The disclosed files can be further leveraged to escalate privileges locally.