CVE-2026-33588 (CVSS 8.1) - Lack of user input validation in the file upload functionality of Open Notebook

📡 NVD-Latest · 2026-05-07

CVE-2026-33588 (CVSS 8.1) - Lack of user input validation in the file upload functionality of Open Notebook

CVE-2026-33588

CVE-2026-33588 CVSS:8.1

Lack of user input validation in the file upload functionality of Open Notebook v1.8.3 allows the application user to create or modify files on the docker container via path traversal.

产品: lfnovo open-notebook


📌 来源: NVD-Latest | 🆔 CVE-2026-33588 | 📅 2026-05-07

[!] CONTACT_CHANNELS

如需商务合作、技术咨询或漏洞反馈,请通过以下离岸节点联系作者。

> PING_AUTHOR (@A1RedTeam)