CVE-2026-32147 - SFTP chroot bypass via path traversal in SSH_FXP_FSETSTAT
CVE ID :CVE-2026-32147 Published : April 21, 2026, 12:01 p.m. | 23 minutes ago Description :Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Erlang OTP ssh (ssh_sftpd module) allows an authenticated SFTP user to modify file attributes outside the
ORIGINAL SOURCE →via CVE Feed Latest
ADVERTISEMENT
⚡ STAY AHEAD
Events like this, convergence-verified across 689 sources, land in your inbox every Sunday. Free.
GET THE SUNDAY BRIEFING →RELATED · cyber
- [CYBER] How to Compare package.json Files: A Node.js Developer's Guide
- [CYBER] Your AI Agent Is Flying Blind. Here's How to Fix It.
- [CYBER] Yet another ex-ransomware negotiator admits turning rogue after payoff from crimelords
- [CYBER] Kyber Ransomware Double Trouble: Windows and ESXi Attacks Explained
- [CYBER] The Gentlemen Ransomware Expands With Rapid Affiliate Growth
- [CYBER] Do users rage on you after failing phishing campaign? "I didn't click the link" etc?