CVE-2026-39365 | vitejs vite up to 6.4.1/7.3.1/8.0.4 path traversal (GHSA-4w7w-66w2-5vf9)
A vulnerability was found in vitejs vite up to 6.4.1/7.3.1/8.0.4. It has been classified as critical. Affected by this vulnerability is an unknown functionality. This manipulation causes path traversal.
This vulnerability is tracked as CVE-2026-39365. The attack is possible to be carried out remotely. No exploit exists.
Upgrading the affected component is recommended.