CVE-2026-35483 | oobabooga text-generation-webui up to 4.2 load_template path traversal (GHSA-85fx-vw25-4c95)
A vulnerability marked as critical has been reported in oobabooga text-generation-webui up to 4.2. The affected element is the function load_template. Performing a manipulation results in path traversal.
This vulnerability is cataloged as CVE-2026-35483. It is possible to initiate the attack remotely. There is no exploit available.
It is suggested to upgrade the affected component.