CVE-2026-53519 | nezhahq nezha up to 2.0.12 NoRoute /data/config.yaml path traversal (GHSA-5c25-7vpj-9mqh)
A vulnerability classified as critical has been found in nezhahq nezha up to 2.0.12. This impacts an unknown function of the file /data/config.yaml of the component NoRoute Handler. The manipulation leads to path traversal.
This vulnerability is referenced as CVE-2026-53519. Remote exploitation of the attack is possible. No exploit is available.
It is recommended to upgrade the affected component.