Monitor vulnerabilities like this one. Sign up free to get alerted when software you use is affected.
4.9

uListing Path Traversal in Stylemix uListing ulisting

CVE-2026-28078
Summary

A security issue in uListing versions up to 2.2.0 allows an attacker to access unauthorized files on the server. This could potentially allow an attacker to steal sensitive information or take control of the server. Update to the latest version of uListing to fix this issue.

Original title
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Stylemix uListing ulisting allows Path Traversal.This issue affects uListing: from n/a through <= 2.2.0.
Original description
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Stylemix uListing ulisting allows Path Traversal.This issue affects uListing: from n/a through <= 2.2.0.
nvd CVSS3.1 4.9
Vulnerability type
CWE-22 Path Traversal
Published: 5 Mar 2026 · Updated: 13 Mar 2026 · First seen: 6 Mar 2026