What is CVE-2026-47659?
CVE-2026-47659: A path traversal vulnerability was identified in the `/result` endpoint of Pathling Server prior to version 2.0.0. This could allow an authenticated user with a valid async export job ID to access the file system improperly. Upgrading to Pathling Server 2.0.0 is recommended.
Azərbaycanca: CVE-2026-47659: Pathling Server-in 2.0.0 versiyasından əvvəlki versiyalarında `/result` endpointində path traversal zəifliyi aşkar edilib. Bu, autentifikasiya olunmuş istifadəçiyə fayl sisteminə icazəsiz giriş imkanı verə bilər. Pathling Server-i 2.0.0 versiyasına yeniləmək tövsiyə olunur.
Related CVEs
link basis: same weakness class CWE-22
FAQ2
In which endpoint was the CVE-2026-47659 vulnerability discovered in Pathling Server?
This path traversal vulnerability was identified in the `/result` endpoint.
Does exploiting CVE-2026-47659 require the attacker to be authenticated?
Yes, this vulnerability could allow an authenticated user to access the file system improperly.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.