CVE-2026-67613
Last modified
CVE-2026-67613 is a medium-severity vulnerability rated 4.9/10 on the CVSS scale. CyberPanel before 3.0.0 contains a path traversal vulnerability that allows authenticated administrators to read arbitrary files from the server filesystem by supplying unsanitized file paths to the cloudAPI ReadReport endpoint. Attackers can manipulate the reportFile parameter in the JSON request body, which is passed directly to open() in cloudManager.py without validation or allowlisting, enabling traversal to any file readable by the root-privileged CyberPanel process including credential files, SSL and SSH private keys, and JWT secret files.. EPSS estimates a 0.39% chance of exploitation in the next 30 days.
Description
CyberPanel before 3.0.0 contains a path traversal vulnerability that allows authenticated administrators to read arbitrary files from the server filesystem by supplying unsanitized file paths to the cloudAPI ReadReport endpoint. Attackers can manipulate the reportFile parameter in the JSON request body, which is passed directly to open() in cloudManager.py without validation or allowlisting, enabling traversal to any file readable by the root-privileged CyberPanel process including credential files, SSL and SSH private keys, and JWT secret files.
Metrics
Weakness Enumeration
Affected Software
Source: CNA advisory (CVE.org). NVD analysis pending.
| Vendor | Product | Versions |
|---|---|---|
| usmannasir | cyberpanel | < 3.0.0 |
References
Timeline
- Published
- Last Modified
- Status
- Deferred
Frequently Asked Questions
What is CVE-2026-67613?
How severe is CVE-2026-67613?
How do I fix CVE-2026-67613?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2026
- CVE-2026-67608Telenia Software TVox 26.5.3 and prior 26.x versions, and 24…7.2
- CVE-2026-67609Telenia Software TVox 26.5.3 and prior 26.x versions, and 24…7.8
- CVE-2026-6761Privilege escalation in the Networking component. This vulne…8.8
- CVE-2026-67610OpenEMR through 8.2.0 contains an improper authentication vu…8.1
- CVE-2026-67611OpenEMR through 8.2.0 contains an authentication bypass vuln…8.1
- CVE-2026-67612OpenEMR through 8.2.0 contains a stored cross-site scripting…4.8
- CVE-2026-67614CyberPanel before 3.0.0 contains a hard-coded JWT secret vul…9.8
- CVE-2026-67615openEQUELLA before 2026.1.0 contains an authenticated remote…8.8
- CVE-2026-67616Camaleon CMS through 2.9.2, fixed in commit 88ab703, contain…4.3
- CVE-2026-67617Microweber CMS through 2.0.20 contains a stored cross-site s…4.8
- CVE-2026-67618marimo before 0.23.15 contains a configuration injection vul…6.5
- CVE-2026-67619Rejected reason: This CVE ID has been rejected or withdrawn …
Are you affected by CVE-2026-67613?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
