6 min
Fixing a Path Traversal Vulnerability in image-downloader
How CVE-2026-103648, a critical path traversal (CWE-22) in image-downloader, was reported, fixed in 4.3.1 and covered by a regression test.
Topic
Maintaining public software: releases, contributor reports, coordinated disclosure and the community around a project.
1 article
How CVE-2026-103648, a critical path traversal (CWE-22) in image-downloader, was reported, fixed in 4.3.1 and covered by a regression test.