What is CVE-2026-67429?
In Flyto2 Core before 2.26.6, image.download and related modules use a caller-controlled output_dir instead of the proper sandbox confinement, allowing arbitrary file write via attacker-controlled response bytes. Users should immediately update to version 2.26.6 or later.
Azərbaycanca: Flyto2 Core-un 2.26.6-dək versiyalarında, image.download kimi modullar `output_dir` vasitəsilə yönləndirilərək `FLYTO_SANDBOX_DIR` məhdudiyyətindən yayınmağa imkan verir. Bu, hücumçunun idarə etdiyi cavab məlumatlarını sistemə yazaraq özbaşına fayl yaratmasına səbəb ola bilər. İstifadəçilər dərhal 2.26.6 və ya daha yeni versiyaya yenilənməlidir.
Related CVEs
link basis: same weakness class CWE-22
FAQ2
What versions of Flyto2 Core are affected by CVE-2026-67429?
This vulnerability affects Flyto2 Core versions before 2.26.6. Users should update to version 2.26.6 or later.
What can an attacker achieve through CVE-2026-67429?
An attacker can bypass the FLYTO_SANDBOX_DIR confinement by manipulating the output_dir parameter, allowing arbitrary file write via attacker-controlled response bytes.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.