SEPTEMBER 15, 2026
Live Feed
Back to database
Case File

CVE-2026-9166

HIGH · CVSS 7.5 EPSS 0.34%

Source: NVD + CISA KEV + EPSS · Published 2026-09-10 · Last synced 2026-09-15

CyberRota Analysis

AI-Generated

The GisLab Laboratory Management System versions prior to 1.5 are vulnerable to a path traversal attack, which allows unauthorized access to files outside of the intended directory. This flaw could lead to the exposure of sensitive data and potential system compromise. Organizations using affected versions should prioritize patching to mitigate the risk of exploitation.

CVE
CVE-2026-9166
Severity
HIGH
CVSS
7.5
EPSS
0.34%

Original NVD Description

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in GIS Informatics GisLab Laboratory Management System allows Path Traversal. This issue affects GisLab Laboratory Management System: from 1.4.03 before 1.5.