External Control of File Name or Path in Endpoint Manager - CVE-2026-18127
Published: August 11, 2026
Vulnerability details
The vulnerability allows a remote user to overwrite data in an S3 bucket configured for session recording storage.
The vulnerability exists due to external control of a filename in the core when handling session recording storage filenames. A remote user can control a filename to gain full write control over an S3 bucket configured for session recording storage to overwrite data in an S3 bucket configured for session recording storage.
The issue affects configurations that use an S3 bucket for session recording storage.