CVE-2026-28792 | tinacms up to 2.1.7 path traversal (GHSA-8pw3-9m7f-q734 / EUVD-2026-11611)
A vulnerability categorized as critical has been discovered in tinacms up to 2.1.7. This impacts an unknown function. Executing a manipulation can lead to path traversal.
This vulnerability is tracked as CVE-2026-28792. The attack can be launched remotely. No exploit exists.
It is advisable to upgrade the affected component.