AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2026-14194

MEDIUM · CVSS 6.5 EPSS 0.44%

Source: NVD + CISA KEV + EPSS · Published 2026-08-04 · Last synced 2026-08-04

CyberRota Analysis

AI-Generated

HUMANIST Digital Human Resources versions prior to 26.1 are vulnerable to a path traversal attack, allowing unauthorized access to files outside of the intended directory. This could lead to exposure of sensitive information and potential system compromise. Organizations using affected versions should prioritize remediation to mitigate risks associated with this vulnerability.

CVE
CVE-2026-14194
Severity
MEDIUM
CVSS
6.5
EPSS
0.44%

Original NVD Description

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Bilin Software and Informatics Consultancy Inc. HUMANIST Digital Human Resources allows Path Traversal. This issue affects HUMANIST Digital Human Resources: from 26.0 before 26.1.