CVE-2026-8662: Path Traversal in Rapid7 InsightConnect Compression Plugin
Path Traversal vulnerability in the createarchive function of Rapid7 InsightConnect Compression Plugin on Linux allows authenticated attackers to write to unintended file paths via crafted filename input. The impact is limited to file corruption as content cannot be controlled by the attacker.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-8662?
CVE-2026-8662 has a severity rating of low with a score of 3.3.
How do I fix CVE-2026-8662?
To fix CVE-2026-8662, update to the latest version of the Rapid7 InsightConnect Compression Plugin that addresses this vulnerability.
What systems are affected by CVE-2026-8662?
CVE-2026-8662 affects the Rapid7 InsightConnect Compression Plugin on Linux systems.
What type of vulnerability is CVE-2026-8662?
CVE-2026-8662 is a Path Traversal vulnerability that allows attackers to write to unintended file paths.
What is the impact of CVE-2026-8662?
The impact of CVE-2026-8662 is limited to file corruption as the attacker cannot control the content.