External Control of File Name or Path in Kirby - #VU150667
Published: September 17, 2026
Vulnerability details
The vulnerability allows a remote user to write content to arbitrary locations on the server.
The vulnerability exists due to external control of file name or path in Kirby page creation functionality when processing unfiltered root or dirname parameters. A remote user can submit a page creation request with crafted path parameters to write content to arbitrary locations on the server.
The Panel\'s page creation dialog is not an entry point.