THREATOPS
THREAT OPSThreat News › [GHSA] GHSA-c6f4-wj38-m3g3 (high) — Snipe-IT vulnerable to directory traversal in displaySig

[GHSA] GHSA-c6f4-wj38-m3g3 (high) — Snipe-IT vulnerable to directory traversal in displaySig

medgithub_advisoriesPublished 2026-08-28

GHSA-c6f4-wj38-m3g3 Severity: high CVE: CVE-2026-55474

Snipe-IT vulnerable to directory traversal in displaySig

### Impact The `displaySig` action in `ActionlogController` serves signature image files from a private upload directory. The filename parameter from the HTTP route is concatenated directly into a filesystem path with no sanitization, allowing an authenticated attacker to traverse outs

Indicators of compromise

Original source: https://github.com/advisories/GHSA-c6f4-wj38-m3g3