CVE-2026-19762: DTStack Taier Chunk-Check Endpoint FileChunkController.java Paths.ge path traversal
A vulnerability was found in DTStack Taier 1.4.0. Affected by this vulnerability is the function Paths.ge of the file FileChunkController.java of the component Chunk-Check Endpoint. The manipulation of the argument Name results in path traversal. The attack may be launched remotely. The exploit has been made public and could be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-19762?
CVE-2026-19762 has a severity rating of high with a CVSS score of 7.3.
How do I fix CVE-2026-19762?
To fix CVE-2026-19762, ensure to validate and sanitize user inputs in the Paths.ge function to prevent path traversal.
What component is affected by CVE-2026-19762?
CVE-2026-19762 affects the Chunk-Check Endpoint in the FileChunkController.java of DTStack Taier.
Can CVE-2026-19762 be exploited remotely?
Yes, CVE-2026-19762 may be exploited remotely due to its nature as a path traversal vulnerability.
What type of vulnerability is CVE-2026-19762?
CVE-2026-19762 is classified as a Path Traversal vulnerability.