CVE-2026-56845
7.5
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Summary
An unauthenticated path traversal (LFI) vulnerability exists under /custom-sounds/ when CustomSounds storage is configured to FileSystem. By including ../ sequences in the request path, an attacker can read arbitrary files outside the base directory.
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Rocket.Chat | Rocket.Chat | 0 < 8.2.0 | affected |
| Rocket.Chat | Rocket.Chat | 0 < 8.1.1 | affected |
| Rocket.Chat | Rocket.Chat | 0 < 8.0.2 | affected |
| Rocket.Chat | Rocket.Chat | 0 < 7.13.4 | affected |
| Rocket.Chat | Rocket.Chat | 0 < 7.12.5 | affected |
| Rocket.Chat | Rocket.Chat | 0 < 7.11.5 | affected |
| Rocket.Chat | Rocket.Chat | 0 < 7.10.8 | affected |
Weaknesses
- CWE-22: CWE-22 Path Traversal
References
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.