What is CVE-2026-73223?
CVE-2026-73223 in electerm allows a malicious SFTP server to write files outside the temporary directory via the editWithSystemEditor function. This affects versions prior to 3.15.120 and users should update immediately.
Azərbaycanca: electerm terminal emulyatorunda CVE-2026-73223 zəifliyi aşkarlanıb. Bu, SFTP serveri üzərindən editWithSystemEditor funksiyası vasitəsilə müvəqqəti qovluq xaricinə fayl yazmağa imkan verir. 3.15.120 versiyasına qədər istifadəçilərə dərhal yeniləmə etmələri tövsiyə olunur.
Related CVEs
link basis: same weakness class CWE-22
FAQ1
What is the CVE-2026-73223 vulnerability in electerm and which versions are affected?
This vulnerability allows a malicious SFTP server to write files outside the temporary directory by exploiting the editWithSystemEditor function. It affects all versions of electerm prior to 3.15.120.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.