CVE-2026-14973

Summary

IBM Aspera Desktop App 1.0.5 through 1.0.19 IBM Aspera for desktop can allow files to be written outside of the user's selected download destination.

Affected Software

VendorProductVersion RangeStatus
IBMAspera Desktop App1.0.5 <= 1.0.19affected

Weaknesses

  • CWE-22: CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')

References