VULNRABLE / Vulnerability / GHSA-95cv-r8x4-vh75

GHSA-95cv-r8x4-vh75

HIGH LOW github.com/OpenListTeam/OpenList/v4 GHSA

Exploit verdict: No active-exploit signal

CVSS Score
8
Severity
HIGH
EPSS
Source
GHSA

Summary

OpenList: Authenticated users can rename files outside their base path via batch rename `src_name` traversal

What this means

GHSA-95cv-r8x4-vh75 is a high-severity vulnerability affecting github.com/OpenListTeam/OpenList/v4, rated CVSS 8. Published July 25, 2026.

View full advisory at GHSA →