FalkorDB Browser 1.9.3 contains an unauthenticated path traversal vulnerability in the file upload API that allows remote attackers to write arbitrary files and achieve remote code execution.

Project Subscriptions

No data.

Advisories

No advisories yet.

Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

Fri, 10 Apr 2026 09:45:00 +0000

Type Values Removed Values Added
Description FalkorDB Browser 1.9.3 contains an unauthenticated path traversal vulnerability in the file upload API that allows remote attackers to write arbitrary files and achieve remote code execution.
Title Unauthenticated Path Traversal in FalkorDB Browser Leads to Remote Code Execution
Weaknesses CWE-22
References

Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: securin

Published:

Updated: 2026-04-10T09:16:30.338Z

Reserved: 2026-04-10T00:33:01.535Z

Link: CVE-2026-6057

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Received

Published: 2026-04-10T10:16:04.547

Modified: 2026-04-10T10:16:04.547

Link: CVE-2026-6057

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses