Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Sun, 09 Aug 2026 03:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A flaw has been found in abracadabra50 claude-sesh 1.0.0. This issue affects the function getEnrichedData/enrichSession of the file src/services/enricher.ts. Executing a manipulation of the argument sessionId can lead to path traversal. The attack needs to be launched locally. This patch is called 786c9d74800e6d0858b65778f31beb71b3983a50. Applying a patch is advised to resolve this issue. | |
| Title | abracadabra50 claude-sesh enricher.ts enrichSession path traversal | |
| First Time appeared |
Abracadabra50
Abracadabra50 claude-sesh |
|
| Weaknesses | CWE-22 | |
| CPEs | cpe:2.3:a:abracadabra50:claude-sesh:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Abracadabra50
Abracadabra50 claude-sesh |
|
| References |
|
|
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2026-08-09T02:30:11.197Z
Reserved: 2026-08-08T09:29:45.806Z
Link: CVE-2026-19327
No data.
No data.
No data.
OpenCVE Enrichment
Updated: 2026-08-09T04:30:03Z
-
CWE-22
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')