Junglewise Threat Intelligence
CVE-2026-25059: GO-2026-4396 - OpenList vulnerable to Path Traversal in file copy and remove handlers in github.com/OpenListTeam/OpenList
CVE-2026-25059 · Severity: low · CVSS 3.1 · Published 2026-02-05
Technologies: github.com/OpenListTeam/OpenList/v4 (Go), github.com/OpenListTeam/OpenList (Go), github.com/OpenListTeam/OpenList/v3 (Go). Vendors: Go.
Executive brief
OpenList vulnerable to Path Traversal in file copy and remove handlers in github.com/OpenListTeam/OpenList
Affected products
- Go github.com/OpenListTeam/OpenList/v4
- Go github.com/OpenListTeam/OpenList
- Go github.com/OpenListTeam/OpenList/v3