Security Advisory

CVE-2026-29201

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-05-08 18:51:05
Last updated 2026-05-13 21:59:09
Assigner hackerone
CVSS score 8.6
State PUBLISHED

Description

Insufficient input validation of the feature file name in `feature::LOADFEATUREFILE` adminbin call can cause arbitrary file read when a relative file path is passed.