VULNRABLE / Vulnerability / CVE-2026-55874

CVE-2026-55874

HIGH LOW github.com/seaweedfs/seaweedfs GHSA

Exploit verdict: No active-exploit signal

CVSS Score
8
Severity
HIGH
EPSS
1%
Source
GHSA

Summary

SeaweedFS: Path traversal in the S3 gateway X-Amz-Copy-Source header allows cross-bucket object read

What this means

CVE-2026-55874 is a high-severity vulnerability affecting github.com/seaweedfs/seaweedfs, rated CVSS 8. The EPSS model estimates a 1% probability of exploitation in the next 30 days. Published August 29, 2026.

View full advisory at GHSA →