CVE-2026-48350: Animate | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') (CWE-22)
Animate is affected by an Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability that could result in arbitrary code execution in the context of the current user. An attacker could exploit this vulnerability to access sensitive files or directories outside the intended restrictions. Exploitation of this issue requires user interaction in that a victim must open a malicious file. Scope is changed.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-48350?
The severity of CVE-2026-48350 is high with a score of 8.6.
What type of vulnerability is CVE-2026-48350?
CVE-2026-48350 is a Path Traversal vulnerability.
What could an attacker achieve by exploiting CVE-2026-48350?
An attacker could execute arbitrary code and access sensitive files or directories outside the intended scope.
How do I fix CVE-2026-48350?
To fix CVE-2026-48350, ensure that your Animate application is updated to the latest version that addresses this vulnerability.
Which component is affected by CVE-2026-48350?
CVE-2026-48350 affects the Animate application specifically.